
Company News
Jerod Santo Joins Socket as Head of Media
Allow myself to introduce... myself.
ghostlight
Advanced tools
Launcher for visible local browser automation in your signed-in Chromium profile, with optional policy and audit.
Delightful, responsible browser automation for AI coding agents. Ghostlight gives any MCP client access to your own authenticated Chromium session, keeps the work visible, and adds inspectable boundaries when you want them. All-open is a first-class default.
This npm package is a thin launcher. On first run it downloads the version-matched Ghostlight
binaries from the GitHub release and caches them under ~/.ghostlight/bin/, so there are no
runtime dependencies. Every launch verifies all three cached files against the checksums carried
by the package. A bare npx ghostlight starts ghostlight-mcp-connector, the stdio server your
client talks to; npx ghostlight install connects the browser side.
Install the service, browser connection, and detected MCP-client entries in one idempotent step:
npx -y ghostlight install
Restart your MCP clients when both halves are installed. Full walkthrough, client buttons, and manual paths: https://sylin.org/ghostlight/
Check the local connection at any time:
npx -y ghostlight doctor
For a client the installer does not recognize, use Ghostlight as this stdio server:
{ "command": "npx", "args": ["-y", "ghostlight"] }
FAQs
Launcher for visible local browser automation in your signed-in Chromium profile, with optional policy and audit.
We found that ghostlight demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Company News
Allow myself to introduce... myself.

Research
/Security News
A Twitch browser extension on Chrome and Firefox forwards users’ live OAuth session tokens through proxies controlled by a Russian bot service.

Security News
Anthropic found biased reasoning and recklessness drove Claude Mythos 5 to publish malware on PyPI and compromise a security vendor.