A11ySAFE
MCP Server for Web Accessibility Testing (10k+ Downloads, #20 on ProductHunt)
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
[](https://mseep.ai/app/ronantakizawa-a11ymcp)
[](https://mseep.ai/app/01361aeb-0dce-45d6-80fb-76ff443dbfc8)
https://github.com/user-attachments/assets/316c6d44-e677-433e-b4d5-63630b4bab2b
A11y MCP is an MCP (Model Context Protocol) server that gives LLMs access to web accessibility testing APIs.
This server uses the Deque Axe-core API and Puppeteer to allow LLMs to analyze web content for WCAG compliance and identify accessibility issues.
Note: This is not an official MCP server from Deque Labs.
Features
- Test web pages: Test any public URL for accessibility issues with customizable viewport dimensions
- Test HTML snippets: Test raw HTML strings for accessibility issues
- WCAG compliance testing: Check content against various WCAG standards (2.0, 2.1, 2.2)
- Customizable tests: Specify which accessibility tags/standards to test against
- Rule exploration: Get information about available accessibility rules
- Color contrast analysis: Check color combinations for WCAG compliance
- ARIA validation: Test proper
871884409937OBSERVED · 2026-10-07Connect
Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control.
claude mcp add a11y-mcp-server -- npx -y [email protected]
{
"mcpServers": {
"a11y-mcp-server": {
"command": "npx",
"args": [
"-y",
"[email protected]"
]
}
}
}Exposed tools (6)
6 read · 0 write · 0 destructive.
| Tool | Risk | Description |
|---|---|---|
check_aria_attributes | read | Check if ARIA attributes are used correctly in HTML |
check_color_contrast | read | Check if a foreground and background color combination meets WCAG contrast requirements |
check_orientation_lock | read | Check if content forces a specific orientation |
get_rules | read | Get information about available accessibility rules with optional filtering |
test_accessibility | read | Test a webpage for accessibility issues using Axe-core |
test_html_string | read | Test an HTML string for accessibility issues |
Trust audit
SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | PASS |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- declared (1 observation(s))
- Network
- declared (1 observation(s))
- Shell
- none-observed
- Dependencies
- not all pinned
- Secrets in source
- none-found
Findings (1)
@axe-core/puppeteer, @modelcontextprotocol/sdk, axe-core, @types/node, shx, typescript
Gates applied: no_behavioural_pass.
871884409937full audit observations/trust-audit/mcp-server/ronantakizawa__a11y-1.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-07 | 871884409937 | SAFE | B | 89 | first audit |
Questions
What is the A11y MCP server?
MCP Server for Web Accessibility Testing (10k+ Downloads, #20 on ProductHunt)
What tools does A11y expose?
6 in total: 6 read-only, 0 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.
Is A11y safe to connect to an agent?
The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B.
What credentials does A11y need?
No credential environment variables were found in its source, so it appears to need none.
How does A11y run?
It speaks stdio, so it runs as a local process your client starts. It is published on npm as a11y-mcp-server at 1.1.0.
How current is this page?
The grade is for one exact copy of the source (871884409937), read on 2026-10-07. The repository is watched and re-audited when it changes.