Repository intelligence

vibheksoni/stealth-browser-mcp

GitHub

The only browser automation that bypasses anti-bot systems. AI writes network hooks, clones UIs pixel-perfect via simple chat.

CLOUDM0N decision
Trust FAIL · 0/100
Good fit if

Teams whose requirements match this repository’s core capability.

Watch out for

Review deployment and security evidence before production adoption.

Practical intelligence

What matters before you adopt it

Best for
Teams whose requirements match this repository’s core capability.
Main trade-offs
Review deployment and security evidence before production adoption.
Trust & CVEs

Security evidence without the noise

Trust remains a decision signal; CVEs and scanner evidence explain what is driving the risk.

Security findings
28
Trivy + CLOUDM0N
Critical
1
High
17
Medium
10
Low
0
CVE / advisory evidence
Top 6
CVE-2026-32871CRITICALfastmcp: FastMCP: Authenticated Server-Side Request Forgery via path traversal in OpenAPI path parametersFix 3.2.0
CVE-2025-69196HIGHfastmcp: FastMCP: Improper token issuance due to incorrect resource parameter handlingFix 2.14.2
CVE-2026-27124HIGHFastMCP: FastMCP OAuthProxy: FastMCP OAuthProxy: Unauthorized actions due to improper consent validation in GitHub OAuthFix 3.2.0
GHSA-c2jp-c369-7pvxHIGHFastMCP Auth Integration Allows for Confused Deputy Account TakeoverFix 2.13.0
GHSA-rcfx-77hg-w2wvHIGHFastMCP updated to MCP 1.23+ due to CVE-2025-66416Fix 2.14.0
CVE-2025-62800MEDIUMFastMCP vulnerable to reflected XSS in client's callback pageFix 2.13.0
View trust evidence & security findings
Why this score
CLOUDM0NCLOUDM0N scanner found behavior that requires manual review.
TRIVY1 critical vulnerabilities and 0 potential secrets detected by Trivy.
OPENSSFOpenSSF Scorecard essential security checks scored 3.1/10 (partial check set).
CLOUDM0N findings
MEDIUM
Dynamic code execution pattern detected. 1 sample match(es) found.
Architecture from code7 modules · 0 edges
Structural evidence

Modules and dependency edges extracted from repository code. This is code evidence, not README inference.

Code files
32
Modules
7
Dependency edges
0
Core modules
src
25 files
src/js
7 files
Dependency flow
No dependency edges were extracted.
Detected languages
Python · JavaScript · Shell
Detected frameworks
Pydantic · Requests
Architecture evidence details
flowchart TD
    %% stealth-browser-mcp — high-level architecture (DRAFT, refine me)
    n0["src · 25 files"]
    n1["src/js · 7 files"]
Agent handoff
Use with any agent
JSON API
Alternatives

Nearby repositories worth comparing before adoption.

Compare top options →
stealth-chrome-devtools-mcp
DevinoSolutions/stealth-chrome-devtools-mcp
40
Fit

Undetectable browser automation for AI agents via MCP. Stealth Chrome DevTools with smart profile management, anti-detection arg filtering, and CDP access.

Trust REVIEW · 60
Compare →
safari-mcp
achiya-automation/safari-mcp
47
Fit

Native Safari browser automation for AI agents. 97 tools via AppleScript — zero overhead, keeps logins, runs silently in background. Drop-in alternative to Chrome DevTools MCP with 40-60% less CPU/heat on Apple Silicon.

Trust REVIEW · 60
Compare →
Uni-CLI
olo-dot-io/Uni-CLI
12
Fit

One command for every interface—search, run, and inspect real software across APIs, browsers, desktops, local tools, and MCP.

Trust FAIL · 0
Compare →