Back to Home
qontinui icon

qontinui-mcp

by qontinui

Overview

Provides an MCP interface for Qontinui Runner, enabling AI-driven visual automation, testing, and debugging workflows.

Installation

Run Command
poetry run qontinui-mcp

Environment Variables

  • QONTINUI_RUNNER_HOST
  • QONTINUI_RUNNER_PORT
  • QONTINUI_RESULTS_DIR
  • QONTINUI_DEV_LOGS_DIR

Security Notes

The `execute_python` tool (Area G) allows the AI to run arbitrary Python code with specified dependencies directly on the host machine where the `qontinui-runner` is operating. While intended for legitimate automation tasks and protected by an `EXECUTE` permission level, this presents a critical security vulnerability. If an untrusted AI (e.g., via a malicious prompt injection) gains or misuses this permission, it can lead to arbitrary code execution and potential system compromise. The `awas_execute` tool, while designed for standardized web interactions, could also be misused by the AI to interact with malicious external APIs or leak sensitive credentials. The presence of a permission system is a positive feature, but the inherent risk of arbitrary code execution via `execute_python` significantly lowers the overall security score.

Similar Servers

Stats

Interest Score0
Security Score3
Cost ClassMedium
Avg Tokens1500
Stars0
Forks0
Last Update2026-01-18

Tags

mcpautomationaivisual-automationtesting