Anchor Browser for AI agents

Anchor Browser gives AI agents a way to control a real web browser through an API, turning clicks, typing, and page reading into callable actions. Developers use it to automate web tasks. Connect it once through Arc0, and your agent, or Claude, ChatGPT and Cursor, can use it through one MCP endpoint, limited to what each user approved.

AI and modelsAPI keyMCP + RESTanchorbrowser.io
AUDIT LOG · ANCHOR BROWSERPOLICY: acme-support
09:41:07 · claude · u_8f2read
anchor_browser.list_tasks
List Tasks✓ allowed · 212ms
09:41:08 · claude · u_8f2read
anchor_browser.get_profile2
Get Profile (v2)✓ allowed · 164ms
09:41:09 · claude · u_8f2write
anchor_browser.create_task
Create Task✓ approved · approved by user
09:41:12 · claude · u_8f2destructive
anchor_browser.delete_task
Delete Task✕ blocked · policy: deny
EVERY ANCHOR BROWSER CALL, ON THE RECORD
01 · USE CASES

What agents do in Anchor Browser.

01

Run a browser automation task

Create and deploy a task that clicks through a web flow such as filling a form.

02

Read content from a live session

Get the webpage content or clipboard content from an active browser session.

03

Confirm before ending all sessions

Ending every active browser session at once is disruptive and should be confirmed before it runs.

02 · ACTIONS

64 Anchor Browser actions, graded by risk.

Every Anchor Browser action is tagged read, write or destructive, so one policy covers the whole app and new actions inherit the right default.

read

21

Look things up. Allowed by default.

  • anchor_browser.list_tasks
    List Tasks
  • anchor_browser.get_profile2
    Get Profile (v2)
  • anchor_browser.list_profiles
    List Profiles
  • anchor_browser.list_sessions
    List Sessions
  • anchor_browser.get_task_draft
    Get Task Draft
  • anchor_browser.list_extensions
    List Extensions
  • anchor_browser.get_task_version
    Get Task Version
  • anchor_browser.get_session_pages
    Get Session Pages
  • anchor_browser.get_task_metadata
    Get Task Metadata
  • anchor_browser.list_integrations
    List Integrations
  • anchor_browser.list_task_versions
    List Task Versions
  • anchor_browser.get_browser_session
    Get Browser Session
  • anchor_browser.get_webpage_content
    Get Webpage Content
  • anchor_browser.list_agent_resources
    List Agent Resources
  • anchor_browser.list_task_executions
    List Task Executions
  • anchor_browser.get_clipboard_content
    Get Clipboard Content
+ 5 MORE

write

37

Create and change things. Allow, or ask the user first.

  • anchor_browser.create_task
    Create Task
  • anchor_browser.create_profile
    Create Profile
  • anchor_browser.update_profile
    Update Profile
  • anchor_browser.create_integration
    Create Integration
  • anchor_browser.update_task_metadata
    Update Task Metadata
  • anchor_browser.create_or_update_task_draft
    Create or Update Task Draft
  • anchor_browser.run_task
    Run Task
  • anchor_browser.type_text
    Type Text
  • anchor_browser.move_mouse
    Mouse Move
  • anchor_browser.paste_text
    Paste Text
  • anchor_browser.click_mouse
    Click Mouse
  • anchor_browser.deploy_task
    Deploy Task
  • anchor_browser.pause_agent
    Pause Agent
  • anchor_browser.upload_file
    Upload File
  • anchor_browser.resume_agent
    Resume Agent
  • anchor_browser.signal_event
    Signal Event
+ 21 MORE

destructive

6

Delete, cancel or archive. Ask first, or deny outright.

  • anchor_browser.delete_task
    Delete Task
  • anchor_browser.delete_profile
    Delete Profile
  • anchor_browser.delete_extension
    Delete Extension
  • anchor_browser.delete_integration
    Delete Integration
  • anchor_browser.delete_task_version
    Delete Task Version
  • anchor_browser.drag_and_drop
    Drag and Drop
03 · HOW IT WORKS

Anchor Browser in three steps.

  1. 01Your users connect Anchor BrowserThey add their Anchor Browser api key on Arc0 Connect, under your brand. It goes straight into the vault.
  2. 02You set the rulesReads run, writes like “create Task” can wait for the user, and “delete Task” can be denied outright.
  3. 03Any agent can actYour agent calls Anchor Browser through the Arc0 SDK or MCP, and so can Claude, ChatGPT and Cursor. Every call lands on the audit log.
POLICY.TS
await arc0.policies.set('anchor_browser', {
  read: 'allow',
  write: 'ask',        // create_task
  destructive: 'deny',  // delete_task
})

# Claude Code: the same connection, one URL
$ claude mcp add --transport http arc0 \
    https://mcp.arc0.ai/u/u_8f2
04 · AUTH AND DATA

How Anchor Browser connects.

Users add their Anchor Browser api key on Arc0 Connect. It is encrypted in the vault, never shown to the model, and each user can rotate or revoke it at any time.

The same Anchor Browser connection serves your agent over MCP and your own backend over REST and the proxy, so a user connects once. How Arc0 handles credentials →

AUTH
API key
CREDENTIALS
Per-tenant encrypted vault
MODEL SEES
Results only, never credentials
AUDIT LOG
Every call, on every plan
05 · WORKS WITH

Use Anchor Browser from any agent.

Claude
ChatGPT
Cursor
Codex
VS Code
OpenAI Agents SDK
Claude Agent SDK
Vercel AI SDK
Mastra
LangGraph
07 · FAQ

Anchor Browser and Arc0, answered.

Q01

Can I use Anchor Browser with Claude, ChatGPT or Cursor?

Yes. Connect Anchor Browser to Arc0 once, then add your Arc0 MCP URL to Claude, ChatGPT, Cursor, Claude Code or any other remote-MCP client. Each assistant only gets the Anchor Browser actions you allow.

Q02

How do users connect Anchor Browser?

Users add their Anchor Browser api key on Arc0 Connect. It is encrypted in the vault, never shown to the model, and each user can rotate or revoke it at any time.

Q03

Which Anchor Browser actions can my agent take?

64 in total: 21 read, 37 write and 6 destructive, such as “create Task”. Your policies decide which of them each agent may call.

Q04

Can I stop my agent from deleting things in Anchor Browser?

Yes. Actions like “delete Task” are graded destructive. Set destructive actions to deny, or to ask so the user approves each one, and blocked calls still show up on the audit log.

Q05

Can my own backend call Anchor Browser too?

Yes. The same Anchor Browser connection is available over REST and through the Arc0 proxy, so your product and your agent share one connection per user.

Get started

Plug Anchor Browser into your agent.

Your users connect Anchor Browser once, under your brand. Your agent gets 64 actions behind your policies, with every call on the record.

Free to build · MCP + REST · Audit log on every plan