
Research
/Security News
PolinRider Spreads Through Compromised GitHub Accounts and Packagist
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.
@striderlabs/mcp-bestbuy
Advanced tools
MCP server connector for Best Buy electronics retail — search products, manage cart, check store availability, track orders, and manage rewards
MCP server connector for Best Buy electronics retail — search products, manage your cart, check store availability, track orders, and view rewards.
npm install -g @striderlabs/mcp-bestbuy
Add to your claude_desktop_config.json:
{
"mcpServers": {
"bestbuy": {
"command": "mcp-bestbuy"
}
}
}
| Tool | Description |
|---|---|
status | Check authentication status |
login | Sign in with Best Buy account credentials |
logout | Clear session and cookies |
search_products | Search products by name, brand, or category |
get_product_details | Full product info: specs, price, ratings |
check_availability | Shipping and store pickup availability by ZIP |
add_to_cart | Add a product to your cart |
view_cart | View cart contents and totals |
remove_from_cart | Remove an item from cart |
checkout | Preview or complete checkout |
get_store_pickup_slots | Find nearby stores and check pickup availability |
track_order | Track an order by order number |
get_rewards_status | View My Best Buy points, tier, and certificates |
search_products with query "Sony WH-1000XM5"get_product_details with the product URLcheck_availability with your ZIP codeadd_to_cart with the product URLview_cartcheckout with confirm: falsecheckout with confirm: trueUse the login tool to authenticate. Sessions are persisted in ~/.striderlabs/bestbuy/.
Run npx playwright install chromium on first use.
Strider Labs — striderlabs.ai
FAQs
MCP server connector for Best Buy electronics retail — search products, manage cart, check store availability, track orders, and manage rewards
The npm package @striderlabs/mcp-bestbuy receives a total of 2 weekly downloads. As such, @striderlabs/mcp-bestbuy popularity was classified as not popular.
We found that @striderlabs/mcp-bestbuy demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.

Security News
GitHub Actions now supports cache-mode, a least-privilege control on the Actions cache aimed at the cache poisoning technique behind recent compromises.

Company News
Allow myself to introduce... myself.