SecureFoxMCPServer
mcp_secure-fox
Sicherer FoxMCP-MCP-Server für die Browsersteuerung.
Extrahiert SecureFoxMCPServer / SecureFoxMCPTools aus dem Gateway in ein eigenständiges, installierbares Python-Paket (secure-fox). Es umschließt den eingebetteten Upstream-FoxMCP-Server mit Domainvalidierung und Zugriffskontrolle für tabspezifische Operationen.
Upstream-Kompatibilität: Es werden nur _setup_tab_tools, _setup_navigation_tools, _setup_content_tools überschrieben. Alle anderen Tools (windows, history, bookmarks, images) werden unverändert von FoxMCPTools geerbt.
Beziehung zum Gateway
secure-fox ist bewusst vom Gateway-Paket entkoppelt:
Das Gateway importiert
securefoxnicht – es greift über einen Proxy darauf zu, wie auf jedes andere Backend (k8s, netbox, grafana).secure-foxwird in das Gateway-/Deploy-Image installiert und über sein Konsolen-Skriptsecurefox-mcp-servergestartet.Die Policy-Datei des Gateways
deploy/config/policy/real/browser.yamlreferenziert es alsname: browser,url: http://localhost:9005/mcp.
Related MCP server: hronaut
Konsolen-Skript
securefox-mcp-server --mcp-port 9005 --ws-port 8765Die Firefox-Erweiterung verbindet sich über WebSocket (Port 8765). Der MCP-Server läuft auf Port 9005, damit der Policy-Proxy ihn auffinden kann.
Entwicklung
pip install -e ".[dev]"
python -m pytestVeröffentlichung
Manueller Release-Ablauf (der Workflow testet, baut und veröffentlicht bei Tags):
Erhöhe die
versioninpyproject.toml,_version.pyund__init__.py(alle Angaben müssen übereinstimmen).Commit,
git tag v1.2.3, danngit push && git push --tags.Der Workflow führt die Tests aus und pusht
ghcr.io/prog76/mcp-secure-fox:v1.2.3.Lege die neue Version manuell dort fest, wo sie verwendet wird (Deploy-Umgebung:
.env,SECUREFOX_VERSION). Pakete werden aus Git-Refs installiert, nicht von PyPI.
This server cannot be deployed
Maintenance
Related MCP Connectors
Stealth web browser for agents: search, fetch, click, download and type in persistent MCP sessions.
Hosted real Google Chrome MCP with per-user persistent state. Navigate, click, type, screenshot.
Browser MCP for logged-in tasks. Uses your Chrome — credentials stay local. Zero-token replay.
Hyperbrowser MCP — wraps the Hyperbrowser AI-agent browsing API
Related MCP Servers
- AlicenseNot gradedqualityBmaintenanceEnables MCP-compatible agents to securely control the user's already authenticated Chrome browser via explicit tab authorization and DOM-based actions.1Apache 2.0
- FlicenseNot gradedqualityAmaintenanceEnables AI agents to control a persistent local browser with live tabs, navigation, interaction, inspection, and state management through MCP.6-
- AlicenseNot gradedqualityBmaintenanceEnables local control of existing Chrome/Chromium browser tabs through MCP, including tab management, navigation, content reading, screenshots, and page interaction.Apache 2.0
- AlicenseBqualityCmaintenanceEnables MCP clients to drive a real Chromium browser for automation, including navigation, JavaScript execution, CDP commands, network capture, and multi-tab control.7GPL 3.0