bb-browser
Your browser is the API. CLI + MCP server for AI agents to control Chrome with your login state.
Is bb-browser safe? Thin or incomplete trust evidence. Review carefully before production use.
Compare bb-browser
How does it stack up against its Browser & Computer Use neighbours?
Pick any agent to compare →In detail: bb-browser scores 49.0/100 (Grade D), ranked #965 of 1325 tracked open-source AI agent projects, on evidence coverage B (3 of 5 independent signal types). The public evidence: no package-provenance attestation found; OSSF Scorecard rates its supply-chain practices 2.6/10; 32% of recent commits are signed; last pushed 2026-05-29. Every point is earned from checkable signals — never paid placement. How scoring works →
How bb-browser compares in Browser & Computer Use
- #27 autoMate 52.0 +3.0
- #28 Agent-S 50.4 +1.4
- #29 bb-browser 49.0 this agent
- #30 openocta 48.9 −0.1
- #31 OmniParser 45.8 −3.2
Bars show each HVTrust score; the tick marks bb-browser’s 49.0.
Where the 49.0 comes from
HVTrust dimensions vs the Browser & Computer Use average
49.0 / 100 · 100.0% confidencebb-browser Browser & Computer Use average (42 agents)
Quick Trust Read
How to read this: HVTrust (0–100) weighs supply-chain signals (provenance, OSSF Scorecard, signed commits, open license) alongside real-world adoption. Grade D reflects the trust score band: A ≥ 80, B ≥ 65, C ≥ 50, D < 50. Evidence coverage B is separate — it grades how many independent signal types back the score (3 of 5), so a high score on thin evidence stays visible. Full methodology →
Rank Trend
Activity & Reach
Analysis
Activity Inputs
44.2 / 100Supply Chain Trust
Common questions about bb-browser
Does bb-browser publish package provenance?
Does bb-browser have an OpenSSF Scorecard?
Is bb-browser actively maintained?
What license does bb-browser use?
Are bb-browser's commits signed?
Not a safety endorsement. HVTracker describes what public signals show, not whether a project is safe for your use case. Run your own security review before adopting in production.
AI agent surface
MCP, providers, tool surface
These runtime-trust fields — detected from public repo docs and manifests — contribute a bounded adjustment to this project's HVTrust score alongside supply-chain evidence. The exact values each field can add or subtract are documented in the methodology → Compare this surface across every listed agent in the capability matrix →
- MCP signal live
- External deps live
- Tool / plugin surface live
- Package provenance drift live
Detected changes to bb-browser's runtime surface and supply-chain posture, from daily public-signal snapshots. A change here means our detectors see something different — a genuinely changed capability, or better evidence of an existing one.
Maintain bb-browser?
For maintainers
HVTrust scores bb-browser from public signals only — we never contact maintainers first. If a signal is wrong, stale, or missing (provenance you publish, a Scorecard you run, signed releases), tell us and we'll review it. Corrections are public and tracked on GitHub.
Reputation Timeline
Signal history
Embed Badge Badge guide for maintainers →
For maintainers
[](https://hvtracker.net/agents/bb-browser)
<a href="https://hvtracker.net/agents/bb-browser"><img src="https://hvtracker.net/badge/bb-browser.svg" alt="HVTrust"></a>
Other agents in Browser & Computer Use
GitHub REST API (repo, commits, stars, forks, license) · npm Registry (downloads, provenance) · OpenSSF Scorecard CLI
Each agent's signals refresh once daily across 6 staggered batches. Methodology v4.3 · Raw JSON