Skip to main content
Glama
90,314 servers. Updated
20 Best Browser Automation MCP Servers: compared and ranked, September 2026Ranked from 3,330 matching servers on stars, growth, downloads and maintenance. Updated .

Matching MCP tools:

Matching MCP Connectors:

"A local AI setup with LM Studio and a secure browser for real-time AI searches" matching MCP servers:

GET /v1/servers – MCP directory API reference
  • F
    license
    Not graded
    quality
    B
    maintenance
    This MCP server provides secure access to databases for AI agents, enforcing authentication, authorization, human approval, logging, and notifications to prevent dangerous actions.
    -
  • A
    license
    Not graded
    quality
    B
    maintenance
    Enables secure browser automation by letting agents fill Turnkey-stored secrets into web forms without the secret values ever appearing in the conversation, transcript, or model context.
    2 npm
    6
    MIT
  • A
    license
    Not graded
    quality
    B
    maintenance
    An MCP server that gives AI clients controlled access to a real headless browser with domain allowlisting, SSRF protection, per-session isolation, audit logging, and persistent cookies/state across restarts.
    2 npm
    MIT
  • F
    license
    Not graded
    quality
    B
    maintenance
    Enables lifecycle-first governance for Edge AI fleets via MCP tools for approval requests, gate evaluation, and manual hold, ensuring deterministic deployment decisions with two-person approval, attestation, and safe rollback.
    4
    -
  • A
    license
    A
    quality
    C
    maintenance
    Secure MCP server with API-key authentication, bcrypt-hashed keys, and SQLite storage. It protects tools like user listing and secure greetings, requiring a valid environment-set key.
    2
    MIT
  • A
    license
    Not graded
    quality
    C
    maintenance
    Provides an enterprise-grade Model Context Protocol implementation with advanced security features including multi-factor authentication, encryption, and RBAC. Enables secure tool management and context handling for production deployments with comprehensive monitoring and high availability.
    5 npm
    2
    Apache 2.0
  • A
    license
    A
    quality
    B
    maintenance
    Zero-knowledge proof generation MCP server. AI agents can prove identity claims (Coinbase KYC, Country, Google OIDC, Google Workspace, Microsoft 365) without revealing personal data. Runs in AWS Nitro Enclave TEE with x402 USDC payments.
    8
    MIT
  • A
    license
    B
    quality
    A
    maintenance
    MCP server for AI-driven VAPT orchestration, enabling agents to plan and execute authorized security scans through a control plane that enforces scope, sanitization, budget, rate limits, human approval, and audit logging.
    127
    MIT
  • A
    license
    B
    quality
    C
    maintenance
    A security-focused Model Context Protocol server that enables controlled local tool execution through strict network firewalls, filesystem protections, and rate-limiting policies. It features a plugin-based architecture for progressive tool discovery and includes reference implementations for web searching and bug tracking.
    15
    MIT
  • A
    license
    B
    quality
    D
    maintenance
    Enables detection of AI-generated content from ChatGPT, GPT-4, and Gemini models through the BACH AI Content Detector API.
    1
    MIT
  • A
    license
    Not graded
    quality
    A
    maintenance
    A proxy server that sits between MCP clients and servers, providing authentication, tool discovery, caching, and guardrail enforcement to protect MCP servers from malicious inputs.
    57
    Apache 2.0
  • A
    license
    Not graded
    quality
    B
    maintenance
    Read-only observation of a single live URL: parses static HTML to report security posture, forms, links, accessibility signals, and leaks, with described fixes. SSRF-gated and safe, never executes JavaScript.
    45 npm
    MIT
  • A
    license
    Not graded
    quality
    B
    maintenance
    Enables AI agents to operate through a local, signed boundary that blocks prompt injection and secret leakage, verifies outputs, preserves cross-session memory, and provides offline-verifiable receipts. It also exposes 900+ MCP tools for discoverable agent actions.
    7
    MIT
  • A
    license
    Not graded
    quality
    C
    maintenance
    A secure-by-default framework for building MCP servers on Azure Entra ID, enforcing OWASP API Security Top 10 controls with authentication, authorization, and rate limiting.
    MIT