MCPLow riskUnclaimed

bun-uia

Playwright for the Windows desktop, from Bun — drive native GUIs via UI Automation + MCP.

ObscuritySRLobscuritysrl/bun-uia★ 20Updated Jun 18, 2026

server.json

{
  "$schema": "https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json",
  "name": "io.github.ObscuritySRL/bun-uia",
  "description": "Playwright for the Windows desktop, from Bun — drive native GUIs via UI Automation + MCP.",
  "repository": {
    "url": "https://github.com/ObscuritySRL/bun-win32",
    "source": "github",
    "subfolder": "packages/bun-uia"
  },
  "version": "1.9.1",
  "packages": [
    {
      "registryType": "npm",
      "identifier": "bun-uia",
      "version": "1.9.1",
      "runtimeHint": "bunx",
      "transport": {
        "type": "stdio"
      },
      "environmentVariables": [
        {
          "description": "Capability profile: 'readonly' (inspect/read only), 'safe' (read + input + window — default), or 'full' (also os + fs tools).",
          "format": "string",
          "default": "safe",
          "name": "BUN_UIA_PROFILE"
        },
        {
          "description": "Set to '1' to allow OS-level tools (launch_app, run_program, open_path) AND filesystem tools (read_file, write_file, list_dir) regardless of profile.",
          "format": "string",
          "name": "BUN_UIA_OS"
        },
        {
          "description": "Comma-separated tool names or categories to additionally allow on top of the profile.",
          "format": "string",
          "name": "BUN_UIA_ALLOW"
        },
        {
          "description": "Comma-separated tool names or categories to deny, overriding the profile and BUN_UIA_ALLOW.",
          "format": "string",
          "name": "BUN_UIA_DENY"
        },
        {
          "description": "Set to 'never' to forbid the real-cursor fallback entirely (strictly cursor-free). By default clicks/drags are cursor-free but fall back to the real hardware cursor when no cursor-free path exists.",
          "format": "string",
          "name": "BUN_UIA_CURSOR"
        },
        {
          "description": "Sandbox root directory that read_file/write_file/list_dir are confined to when fs tools are enabled.",
          "format": "string",
          "name": "BUN_UIA_FS_ROOT"
        }
      ]
    }
  ]
}

Permissions

DeclaredDetected
Runs code—node
Installs—npm:bun-uia@1.9.1
Runs install scripts—None
NetworkNoneNone
Needs credentialsNoneNone
Outside the workspace—None
Agent tools—None

Checks

Low risk · Nothing worth a warning was found.

Not reviewed by a person · Checked by rules; the model review is not switched on yet.

Versions

  1. #11.9.1latestOct 7, 2026