# Skyvern (slim) > Skyvern is a browser agent that completes multi-step web workflows from natural-language goals using language models and computer vision. It runs as an AGPL-3.0 open-source server or a hosted cloud with a REST API and MCP server. - Full: https://www.anchorterminal.com/tools/skyvern.md (~8,800 tokens) · this version ~1,930 tokens · JSON https://www.anchorterminal.com/tools/skyvern.json · canonical https://www.anchorterminal.com/tools/skyvern - Index: https://www.anchorterminal.com/llms.txt · API: https://www.anchorterminal.com/api/v1/index.json · Updated: 2026-10-08 **B · 63.1/100 · rank #288 of 629 · #10 in Browser automation · not agent-ready · confidence medium** Assessment: The hosted MCP server annotates every tool as read-only or destructive and can advertise a 29 or 32-tool subset in place of 114, and the API has a written six-month deprecation policy. Every key and OAuth token carries full organisation authority, with no read-only or scoped credential, and no request rate limits are documented. ## Facts - Kind: HTTP API · vendor: Ikonomos Inc. (Skyvern) · category: Browser automation · legal entity: Ikonomos Inc. · provenance 78/100 - Endpoint: `https://api.skyvern.com/v1` (HTTP, Streamable HTTP, stdio) - Auth: OAuth or key · pricing: Freemium · x402: no · licence: AGPL-3.0 for the open-source server, SDKs and MCP server. Skyvern Cloud is a proprietary service under Skyvern's terms, and its anti-bot measures aren't in the repository - Probe metrics: not measured yet (probes haven't run) - Graded surface: Skyvern Cloud, the REST API at https://api.skyvern.com/v1 and the hosted MCP server at https://api.skyvern.com/mcp. The same code is open source under AGPL-3.0 for self-hosting with your own model keys - MCP server: Official. Hosted over streamable HTTP with OAuth or `x-api-key`, or local stdio with `python -m skyvern run mcp` against a self-hosted server. 114 tools at full scope, 29 `operate`, 60 `build`, 54 `browser`, 32 `lean`, chosen by /mcp/x/ or `X-Skyvern-Scope` - Credentials: Organisation-wide API key in `x-api-key`, no expiry, rotated in Settings. OAuth 2.0 authorisation code with PKCE S256, dynamic client registration and rotating refresh tokens. OAuth scopes are identity claims only. No read-only or scoped credential - Free tier: 5,000 credits once, 1 concurrent run, no card. The pricing page estimates about 170 actions and the billing docs about 200 - Plans: Hobby $29 a month, 30,000 credits, 10 concurrent runs. Pro $149, 150,000 credits, 25 concurrent, residential proxies, TOTP and 1Password. Enterprise custom, 100 concurrent, HIPAA and the SOC 2 report - Rate limits: Concurrent runs per plan are published. No request limits in the docs. Responses carry `ratelimit-policy: "submit-run";q=50;w=60`, and run submission can answer 503 with `Retry-After` - Errors: Terminal run statuses include `completed`, `failed`, `terminated` and `timed_out`, with `failure_reason` and a caller-defined `error_code_mapping`. MCP results carry codes such as SELECTOR_NOT_FOUND with a hint - SDKs: Python `skyvern` 1.0.55 (Python 3.11 to 3.14) and TypeScript `@skyvern/client` 1.0.55, both 1 October 2026, generated from the OpenAPI document - Audit: GET /v1/audit-events/export, default window 90 days, JSON or CSV, up to 500 a page. Each run keeps a recording, screenshots, an action timeline and a HAR file - Deprecations: At least six months' notice, 12 for a major version, `Deprecation` and `Sunset` headers, `deprecated` flags in the OpenAPI document. No /v1 endpoint is deprecated today - Status: status.skyvern.com on Statuspage, three components. One incident in the 90 days to 8 October 2026, about 70 minutes of elevated run failures on 6 August - Reuse terms: You are responsible for the target site's terms and for authorisation to automate it. Data may be sent to third-party model providers, and anonymised data may train models unless you opt out by email - Prices: Hobby plan $29 per month (plan); Pro plan $149 per month (plan); Skyvern SMS number, Pro plan $10 per month (plan) - Scores: Reliability 57, Performance pending, Schema & documentation 88, Agent ergonomics 76, Security & auth 59, Payments & pricing 32, Task success pending, Maintenance & community 85, Transparency & trust 72 · negative events -3 · total over the 7 assessed categories - Why: Reliability, Graded as a hosted service, Skyvern Cloud at api.skyvern.com. · Schema & documentation, OpenAPI 3.1.0 at /docs/api-reference/openapi.json with 94 operations on 71 paths and 261 schemas, and MCP tools with typed parameters (25). · Agent ergonomics, The full MCP surface is 114 tools by the docs' count (5). · Security & auth, An organisation-wide API key in the `x-api-key` header, revocable and rotated from Settings, or OAuth 2.0 with PKCE, dynamic client registra… · Payments & pricing, No x402, MPP or L402 in the docs, llms.txt or pricing page (0). · Maintenance & community, Version 1.0.55 on PyPI and npm on 1 October 2026, seven days before this check (30). · Transparency & trust, The core is AGPL-3.0, an OSI licence, in a public repository. - Sources: 32, open questions: 9, both in the full twin - Capabilities: browser.control, browser.hosted, web.extract, automation.workflows, browser.debug - JSON: https://www.anchorterminal.com/api/v1/tools/skyvern.json - Verify (for the vendor): the badge `https://www.anchorterminal.com/badges/skyvern.svg` or a link to https://www.anchorterminal.com/tools/skyvern from a page on skyvern.com or one of its subdomains, or the README of github.com/Skyvern-AI/skyvern, then `POST https://www.anchorterminal.com/api/v1/verify` `{"slug", "url"}` or `verify_listing` at /mcp; re-checked weekly, no effect on the grade. Snippets in the full twin. ## Before you call it 1. Connect to https://api.skyvern.com/mcp/x/lean or /x/operate, or send `X-Skyvern-Scope`, so the client loads 32 or 29 tools. The scope filters the list and does not limit permissions 2. Use a separate Skyvern organisation for each blast radius. Any key or OAuth token can read and write stored credentials and delete workflows 3. Never pass passwords to `skyvern_act` or `skyvern_type`. Store them as credentials and call `skyvern_login` 4. Set `max_steps` on tasks, or `x-max-steps-override` on agent runs, to cap credits. A run that reaches the cap ends as `timed_out` 5. On 503 from POST /v1/run/agents, wait `Retry-After` seconds. No run was created, so resubmitting is safe ## Connect ```bash pip install skyvern ``` ```bash curl -X POST "https://api.skyvern.com/v1/run/tasks" -H "x-api-key: YOUR_API_KEY" -H "Content-Type: application/json" -d '{ "url": "https://example.com", "prompt": "Extract the pricing table" }' ``` ```bash claude mcp add --transport http skyvern https://api.skyvern.com/mcp/ --scope user ``` Full config and headless snippets are in the full page. Through letme (picks today, calling later): https://letme.dev/skyvern ## Similar tools | Tool | Grade | Score | Shared capabilities | Slim | | --- | --- | --- | --- | --- | | Browser Use | BB | 77.9 | browser.control, browser.hosted, web.extract | https://www.anchorterminal.com/tools/browser-use.min.md | | Browserless | BB | 70.4 | browser.control, browser.hosted, browser.debug | https://www.anchorterminal.com/tools/browserless.min.md | | Steel | BB | 70.4 | browser.control, browser.hosted, browser.debug | https://www.anchorterminal.com/tools/steel.min.md | | Anchor Browser | B | 67.3 | browser.control, browser.hosted, browser.debug | https://www.anchorterminal.com/tools/anchor-browser.min.md | | Hyperbrowser | B | 66.9 | browser.control, browser.hosted, web.extract | https://www.anchorterminal.com/tools/hyperbrowser.min.md | ## Panel reviews (0, desk reviews from public material, no calls made)