
Security News
Re-Enabled GitHub Actions Expose Thousands of Repositories to Mini Shai-Hulud
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.
rasterly-mcp
Advanced tools
MCP server for rasterly — let any AI agent read any URL as clean Markdown, or see it as a screenshot.
Give any AI agent eyes and a reader for the live web. An MCP server that lets your agent turn a URL into clean Markdown, a screenshot it can actually see, or a PDF — backed by rasterly, a real headless-Chromium rendering API.
Works in any MCP client: Claude Desktop, Claude Code, Cursor, Windsurf, and others.
| Tool | What the agent gets |
|---|---|
read_url | The page's main content as clean, LLM-ready Markdown — JS is rendered, nav/ads/boilerplate stripped. Use it to read a URL. |
capture_url | A screenshot returned as an image, so the agent can see the page (layout, charts, anything visual). full_page optional. |
url_to_pdf | A print-ready PDF of the page (base64 resource). |
Why an agent wants this: a plain fetch() gets you raw HTML that a modern, JS-rendered
site won't even populate. read_url runs a real browser and hands back just the article —
far fewer tokens, far more signal.
Get a key at rasterly.dev (free tier: 100 renders/month), then add the server to your MCP client.
Claude Desktop / Claude Code / Cursor — add to your MCP config
(claude_desktop_config.json, .mcp.json, or the client's MCP settings):
{
"mcpServers": {
"rasterly": {
"command": "npx",
"args": ["-y", "rasterly-mcp"],
"env": { "RASTERLY_API_KEY": "sk_live_your_key" }
}
}
}
Restart the client. Your agent now has read_url, capture_url, and url_to_pdf.
Ask your agent things like:
| Env var | Default | Notes |
|---|---|---|
RASTERLY_API_KEY | – | Your rasterly key (sent as X-Api-Key). |
RASTERLY_API_URL | https://rasterly-production.up.railway.app | Override to point at a self-hosted rasterly. |
RASTERLY_API_KEY=sk_live_… npx -y rasterly-mcp
MIT · built on rasterly
FAQs
MCP server for rasterly — let any AI agent read any URL as clean Markdown, or see it as a screenshot.
The npm package rasterly-mcp receives a total of 18 weekly downloads. As such, rasterly-mcp popularity was classified as not popular.
We found that rasterly-mcp demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Security News
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.

Research
/Security News
A malicious Firefox extension fetches its payload after installation to evade detection, steal Google session cookies, and automate account takeover.

Research
/Security News
The compromise affects MemTensor's MemOS, an open source memory framework for large language models (LLMs) and AI agents. Both npm package @memtensor/memos-cloud-openclaw-plugin and the PyPI package MemoryOS are compromised. They drop cross-platform Go binaries that exfiltrate developer secrets.