by feder-cr
Anti-detect agentic stealth browser: undetected browsing, browser automation, Python AI web browsing agent, computer use, scraping, lead generation. No captchas.
# Add to your Claude Code skills
git clone https://github.com/feder-cr/aihawk_mcp_serverGuides for using ai agents skills like aihawk_mcp_server.
Last scanned: 9/22/2026
{
"issues": [
{
"file": "README.md",
"line": 37,
"type": "remote-install",
"message": "Install command (remote install script piped to a shell — review the source before running): \"curl -LsSf https://astral.sh/uv/install.sh | sh\"",
"severity": "low"
},
{
"file": "skills/setup/SKILL.md",
"line": 21,
"type": "remote-install",
"message": "Install command (remote install script piped to a shell — review the source before running): \"curl -LsSf https://astral.sh/uv/install.sh | sh\"",
"severity": "medium"
}
],
"status": "PASSED",
"scannedAt": "2026-09-22T09:02:21.862Z",
"npmAuditRan": true,
"pipAuditRan": true,
"promptInjectionRan": true
}See how aihawk_mcp_server compares with popular alternatives.
aihawk_mcp_server is an open-source ai agents skill for AI coding assistants such as Claude Code, Codex CLI, and ChatGPT, built by feder-cr. Anti-detect agentic stealth browser: undetected browsing, browser automation, Python AI web browsing agent, computer use, scraping, lead generation. No captchas. It has 31,623 GitHub stars.
Yes. aihawk_mcp_server passed SkillsLLM's automated security scan — a dependency vulnerability audit plus prompt-injection heuristics — with no high-severity issues. You can read the full report in the Security Report section on this page.
Clone the repository with "git clone https://github.com/feder-cr/aihawk_mcp_server" and add it to your Claude Code skills directory (see the Installation section above).
aihawk_mcp_server is primarily written in Python. It is open-source under feder-cr on GitHub, so you can review or fork the full source.
Yes. SkillsLLM lists many other AI Agents skills you can browse and compare side by side. Open the AI Agents category from the badge at the top of this page, or use the Related Skills and comparison links further down to weigh aihawk_mcp_server against similar tools.
No comments yet. Be the first to share your thoughts!
⚠️ Third-Party Software Notice
This skill is third-party open-source software developed and hosted independently on GitHub. SkillsLLM is an informational directory and does not control or maintain the underlying repository.
Any security checks, ratings, or warnings displayed by SkillsLLM are automated and limited in scope. They do not constitute a security certification or guarantee that the software is safe, error-free, or free from malicious code, vulnerabilities, compromised dependencies, or prompt-injection risks.
Review the source code, permissions, dependencies, and configuration before installing or running any third-party skill. Use is at your own risk. To the maximum extent permitted by applicable law, SkillsLLM is not liable for losses arising from third-party software.
AIHawk is an anti detect browser and web browsing agent, open source, with an MCP server for coding agents: undetected, no captchas, no blocks. Tell it what you want in plain language.
FEATURED IN Business Insider · TechCrunch · Semafor · Wired · The Verge · Vanity Fair · 404 Media
Windows, in PowerShell:
powershell -ExecutionPolicy ByPass -c "irm https://astral.sh/uv/install.ps1 | iex"
$env:Path = "$env:USERPROFILE\.local\bin;$env:Path"
Linux:
curl -LsSf https://astral.sh/uv/install.sh | sh
source $HOME/.local/bin/env
Then install it in your assistant.
Claude Code:
claude plugin marketplace add feder-cr/aihawk_mcp_server
claude plugin install aihawk@feder-cr
Codex:
codex plugin marketplace add feder-cr/aihawk_mcp_server
codex plugin add aihawk@feder-cr
Gemini CLI:
gemini extensions install https://github.com/feder-cr/aihawk_mcp_server
We bring the interface, you bring an OpenRouter key. Chat on the left, the live browser on the right.
Windows, in PowerShell:
powershell -ExecutionPolicy ByPass -c "irm https://astral.sh/uv/install.ps1 | iex"
$env:Path = "$env:USERPROFILE\.local\bin;$env:Path"
uvx aihawk ui --openrouter-key sk-or-...
Linux:
curl -LsSf https://astral.sh/uv/install.sh | sh
source $HOME/.local/bin/env
uvx aihawk ui --openrouter-key sk-or-...
Then open http://127.0.0.1:8765 and type the same thing.
Anything that needs real web automation: a browser rather than an API, and a person's judgement about what is on the page.
Go to
<paste the URL>. One way, Milan to Lisbon, economy, one checked bag, one adult. Check every date from the 12th to the 16th of next month, one at a time, and read the cheapest fare for each day. The date field is a calendar widget, so click the days rather than typing them. If a date has no availability, say so. Do not guess a number.
It drives the page the way a person would: the pointer moves, keys are pressed.
--openrouter-key Your key, or the OPENROUTER_API_KEY variable.--model An OpenRouter model id, or AIHAWK_MODEL. Defaults to z-ai/glm-5.3-flash.--proxy Optional. http://user:pass@proxy.example.com:8080 or
socks5://proxy.example.com:1080. Host and port are both required. The
timezone, locale and egress follow it.--binary An engine binary you already have. It must be the build the seal
pins, or startup refuses: this skips the download, not the version check.--seed An integer. Same seed, same browser identity, every run.--profile-dir A directory to keep the profile in, so logins and cookies
survive restarts.--headed Show the browser window. The interface shows you the page anyway.--host, --port 127.0.0.1 and 8765. Changing the host
exposes an interface that has no authentication..env beside the commandRather than retyping the key and the binary path, put them in a .env in the
directory you run from:
OPENROUTER_API_KEY=sk-or-...
STEALTHFOX_BINARY=/path/to/firefox
It is read at startup, and on the way in it never overrides something
already set, so the order is --flag > the environment > .env > the default.
Only the directory you are in is read - there is no search upwards, so running
from a subfolder cannot silently pick up a different key. The startup line names
the variables it applied and never prints their values.
Passing --openrouter-key puts the key in your shell history, and on Linux in
the process list. OPENROUTER_API_KEY in the environment or in a .env avoids
both.
The reading room around the agent lives in the wiki: the AI browser-agent landscape: browser-use, Operator-style and computer-use agents compared, what to check when an agent gets blocked, and what happened to OpenAI Operator, among others. Worked examples, transcripts and their outputs live in articles/.
The MCP server from option 1 ships inside this package: aihawk with no
subcommand is the server, aihawk ui the interface. Its config blocks for
clients that take a file, its settings and its tools are on the wiki page
The MCP server.
This automates a browser under your control. Read the terms of the sites you point it at, respect their rate limits, and do not submit anything a human has not read.
AIHawk runs on your machine and has no server of its own. What leaves your computer, and to whom:
Nothing else is collected and nothing is sent to the author. Sessions,
profiles and screenshots are stored locally, under AIHAWK_HOME if set and
otherwise in the application-data directory of your system, and are yours to
delete; nothing is retained anywhere else. Questions go to the
issues.
MIT. Everything distributed before 2 September 2026 was released under AGPL-3.0 and stays under it.