Computer MCP runs on your own machine — the client starts it, so there is no endpoint to ping. Last commit 19 Sep 2026.
macOS computer use with the guardrails on: passwords blacked out, writes need consent, all logged.
Today is the operative word: we check Computer MCP every 15 minutes and re-read its code on every release. Watch it and you find out the day that stops being true.
This server runs on your own machine — install it with the package manager and the client starts it for you. Package name taken from the official registry entry.
claude mcp add computer-mcp -- npx -y @agent360/computer-mcp
{
"mcpServers": {
"computer-mcp": {
"args": [
"-y",
"@agent360/computer-mcp"
],
"command": "npx"
}
}
}
[mcp_servers.computer-mcp]
command = "npx"
args = ["-y", "@agent360/computer-mcp"]
{
"mcpServers": {
"computer-mcp": {
"args": [
"-y",
"@agent360/computer-mcp"
],
"command": "npx"
}
}
}
{
"mcpServers": {
"computer-mcp": {
"args": [
"-y",
"@agent360/computer-mcp"
],
"command": "npx"
}
}
}
This one needs environment variables set before it will start:
CMCP_MODE (readonly | ask (default) | allow), CMCP_ASK_TIMEOUT (Seconds a consent dialog waits before refusing. Default 60.).
The author declared them in the registry entry; get the values from the project itself.
FHIR MCP server with SMART Backend Services, response compaction, FHIRPath, and guarded writes.
Local macOS Computer Use MCP server with screenshots, AX trees, and app actions.
Run sudo commands with a Fernet-encrypted password bound to machine-id + user.
Open-source computer use for macOS agents.
MCP server for credential isolation — bots use passwords and API keys without seeing them
Corrections that outlive the session. A guard blocks the edit that writes the old value back.
Governed MCP runtime for the Apple ecosystem, available on macOS with per-call approval.
Polish company records from the official KRS register API, with alerts on new registry entries.
Answers built from our own checks of this server.