Skip to main content
Glama
93,551 servers. Updated
20 Best Browser Automation MCP Servers: compared and ranked, October 2026Ranked from 3,477 matching servers on stars, growth, downloads and maintenance. Updated .

Matching MCP tools:

Matching MCP Connectors:

"Developing a Chrome Extension for Customizing or Managing Cursor Behavior" matching MCP servers:

GET /v1/servers – MCP directory API reference
  • F
    license
    Not graded
    quality
    B
    maintenance
    MCP server for storing and managing QA workflows, encrypted credentials, and browser test run history. Enables agents to create targets, workflows, and retrieve decrypted credential bundles for test execution.
    -
  • F
    license
    Not graded
    quality
    B
    maintenance
    This MCP server provides secure access to databases for AI agents, enforcing authentication, authorization, human approval, logging, and notifications to prevent dangerous actions.
    -
  • A
    license
    A
    quality
    A
    maintenance
    A Model Context Protocol (MCP) server for Chrome Enterprise Premium that exposes DLP rules, content detectors, connector policies, browser telemetry, and license management as MCP tools, enabling any MCP-compatible AI agent to inspect and configure a Chrome Enterprise environment.
    25
    10 npm
    11
    Apache 2.0
  • A
    license
    Not graded
    quality
    B
    maintenance
    MCP server that gives AI agents secure, consent-based access to a single browser tab, supporting read-only snapshots, element interaction with per-action approval, and frozen multi-step plans, all audited.
    MIT
  • F
    license
    Not graded
    quality
    D
    maintenance
    This MCP server enables interaction with Google's Verified Access API, allowing users to verify the security posture of Chrome OS and Chrome Browser devices through natural language commands.
    -
  • A
    license
    A
    quality
    F
    maintenance
    Provides AI assistants with specialized tools to interact with NIST's Open Security Controls Assessment Language (OSCAL) framework. It enables agents to retrieve schemas, explore models, and generate valid OSCAL documentation for security compliance automation.
    40
    53
    Apache 2.0
  • F
    license
    D
    quality
    Not graded
    maintenance
    A proof-of-concept attack that exploits Model Context Protocol (MCP) tool registration to achieve persistent agent poisoning in AI assistants like Cursor, embedding malicious instructions that persist across chat contexts without requiring tool execution.
    2
    -
  • A
    license
    Not graded
    quality
    A
    maintenance
    A client-side MCP proxy that injects OAuth 2.0 bearer tokens or API keys into MCP requests, enabling MCP clients to connect to OAuth/API-key-protected MCP servers like Amazon Bedrock AgentCore Gateway. It automatically fetches and refreshes credentials using AgentCore Identity or static values.
    MIT No Attribution
  • A
    license
    Not graded
    quality
    A
    maintenance
    Turn Claude into an ISO 27001 compliance assistant - controls, risk register, policies, evidence tracking, SoA generation, and full audit workflows in one local encrypted MCP server.
    90 npm
    32
    MIT
  • F
    license
    Not graded
    quality
    B
    maintenance
    Exposes an Auth0 Form as an MCP server, enabling AI models to interact with the form via natural language. It uses a stateless HTTP MCP transport with Auth0 authentication.
    -
  • A
    license
    Not graded
    quality
    A
    maintenance
    Manage a fleet of OPNsense firewalls from an AI agent, inside guardrails it can't drive around. MCP server for central management of OPNsense firewall fleets. 129 tools across devices, config sync, tasks, schedules, templates, backups and remote consoles - destructive actions confirmation-gated, MCP-issued tokens lifetime-bounded, backup and storage secrets excluded from the toolset entirely.
    Apache 2.0
  • A
    license
    Not graded
    quality
    B
    maintenance
    Provides Claude Desktop access to Defense.com threat intelligence data for risk assessment, threat analysis, and workload management. It also features interactive security training tools and supports over 200 source type aliases for simplified querying.
    3
    MIT
  • A
    license
    Not graded
    quality
    D
    maintenance
    Provides agent certification and trust verification tools for AI agents, enabling certification checks, trust score calculations, audit ticket issuance, and emergency kill switch activation through the A-SOC trust network.
    1 npm
    1
    -
  • A
    license
    Not graded
    quality
    B
    maintenance
    Enables secure one-time encrypted file and note sharing by encrypting data locally before upload and providing tools for sending, listing, checking, and revoking links.
    MIT
  • F
    license
    Not graded
    quality
    A
    maintenance
    Enables checking a verified email for breach exposure and querying SHA-1 password hash prefixes through read-only tools that return concise evidence summaries.
    -
  • A
    license
    Not graded
    quality
    D
    maintenance
    A safety layer and monitoring copilot for AI agents using Splunk MCP, recording tool calls, enforcing policies, and blocking risky actions.
    MIT
  • F
    license
    Not graded
    quality
    C
    maintenance
    A remote MCP server that links World ID 4.0 sessions to AI assistants, enabling verified human authentication and tools for claiming Founding Human places, accessing human grants, and interacting with a verified human wall.
    -