Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx agentmods add mcp/techgardencode/naive-user/playwrightgit clone --depth 1 https://github.com/TechGardenCode/naive-userGrade A, and why
playwright scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
This is a copy
84% identical to playwright — 4 lines differ, which has more behind it and is treated as the original. This page carries a canonical link to it rather than competing with it.
What it actually says
{
"playwright": {
"command": "npx",
"args": [
"@playwright/mcp@latest",
"--headless"
]
}
}What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- yesterday First seen · 9 lines scan A f2d05a0068b9
playwright is an MCP server published in the GitHub repository TechGardenCode/naive-user (1 stars, last pushed 1mo ago), licensed MIT. Its token cost is not measured: an MCP server costs its tool schemas, not its config file. A static security scan graded it A with 0 findings. It is 84% identical to playwright, differing in 4 lines, and is treated as a copy.
Other mcp servers, from other repositories
crowd-test-mcp
MCP server for crowd-test: unleash a mob of AI virtual users on your website from Claude Desktop, Claude Code, Cursor, or any MCP client. Runs locally from the crowd-test-mcp Python package.
safari-devtools-mcp
MCP server for Safari DevTools — browser debugging and automation for AI coding agents. Runs locally from the safari-devtools-mcp npm package.
x-use
Browser-native AI agents for X (Twitter): multi-account, MCP-ready, no API keys required. Runs locally from the x-use-mcp Python package. Needs 2 environment variables to run.
notebooklm-mcp-secure
Security-hardened NotebookLM MCP with post-quantum encryption. Runs locally from the @pan-sec/notebooklm-mcp npm package.
ai-browser
MCP server "ai-browser" as configured in AI-XiaoDao/ai-browser-mcp. Runs CEFbro/AI-Fbowser-Mcp/mcp_bridge.js with node. Needs 3 environment variables to run.
openbrowser-ai
Agentic browser automation using LangGraph and raw CDP. Runs locally from the openbrowser-ai Python package. Needs 7 environment variables to run.