Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add mcp/guanyang/open-agent-hub/playwrightgit clone --depth 1 https://github.com/guanyang/open-agent-hubGrade A, and why
playwright scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
This is a copy
80% identical to playwright — 3 lines differ, which has more behind it and is treated as the original. This page carries a canonical link to it rather than competing with it.
What it actually says
{
"playwright": {
"command": "npx",
"args": [
"-y",
"@playwright/[email protected]",
"--extension"
]
}
}What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- yesterday First seen · 10 lines scan A 6f849be05cd6
playwright is an MCP server published in the GitHub repository guanyang/open-agent-hub (958 stars, last pushed yesterday), licensed MIT. Its token cost is not measured: an MCP server costs its tool schemas, not its config file. A static security scan graded it A with 0 findings. It is 80% identical to playwright, differing in 3 lines, and is treated as a copy.
Other mcp servers, from other repositories
stagehand
MCP server "stagehand" as configured in browserbase/stagehand. Runs ../core/dist/facade/stdio-server.mjs with node.
stdio-full
MCP server "stdio-full" as configured in apify/apify-mcp-server. Runs dist/stdio.js with node. Needs 2 environment variables to run.
resend
MCP server "resend" as configured in evan043/claude-cli-advanced-starter-pack. Launched with cmd /c npx -y @anthropic/mcp-resend. Needs 1 environment variable to run.
context7
MCP server "context7" as configured in evan043/claude-cli-advanced-starter-pack. Launched with cmd /c npx -y @upstash/context7-mcp.
site-intel
MCP server "site-intel" as configured in evan043/claude-cli-advanced-starter-pack. Runs src/site-intel/mcp-server.js with node.
parallel-browser-mcp
MCP server for parallel browser automation across multiple providers. Runs locally from the parallel-browser-mcp npm package. Needs 7 environment variables to run.