Web ReaderSAFE
让Claude等大语言模型轻松获取和解析任何网页内容,并转化为干净的Markdown。支持双引擎、批量处理,增强AI互联网信息处理能力。
Overview
From the repository's own README, as read at the audited commit. Badges and raw HTML are left out.
一个强大的 MCP (Model Context Protocol) 服务器,让 Claude 和其他大语言模型能够读取和解析网页内容。支持突破访问限制,轻松获取微信文章、时代杂志等受保护内容。
功能特点
- 🚀 三引擎支持:集成 Jina Reader API、本地解析器和 Playwright 浏览器
- 🔄 智能降级:Jina Reader → 本地解析 → Playwright 浏览器三层自动切换
- 🌐 突破限制:使用 Playwright 处理 Cloudflare、验证码等访问限制
- 📦 批量处理:支持同时获取多个 URL
- 🎯 灵活控制:可选择强制使用特定解析方式
- 📝 Markdown 输出:自动转换为清晰的 Markdown 格式
安装
方法 1:从源码安装
# 克隆仓库 git clone https://github.com/zacfire/mcp-web-reader.git cd mcp-web-reader # 安装依赖 npm install # 构建项目 npm run build # 安装 Playwright 浏览器(必需) npx playwright install chromium
方法 2:使用 npm 安装(如果已发布)
npm install -g mcp-web-reader
配置
在 Claude Desktop 的配置文件中添加:
Windows: %APPDATA%\Claude\claude_desktop_config.json
macOS: ~/Library/Application Support/Claude/claude_desktop_config.json
{
"mcpServers": {
"web-reader": {
"command": "node",
"args": ["/absolute/path/to/mcp-web-reader/dist/index.js"]
}
}
}使用方法
配置完成后,在 Claude 中可以使用以下命令:
- 智能获取(推荐)
- "请获取 https://example.com 的内容"
- 自动三层降级:Jina Reader → 本地解析 → Playwright 浏览器
- 批量获取
- "请获取这些网页:[url1, url2, url3]"
- 每个URL都享受智能降级策略
- 强制使用 Jina Reader
- "使用 Jina Reader 获取 https://example.com"
- 强制使用本地解析
- "使用本地解析器获取 https://example.com"
- 强制使用浏览器模式
- "使用浏览器获取 https://example.com"
- 直接跳过其他方式,适用于确定有访问限制的网站
支持的受限网站类型
✅ 微信公众号文章 - 自动绕过访问限制 ✅ 时代杂志、纽约时报 - 突破付费墙和地区限制 ✅ Cloudflare 保护网站 - 通过真实浏览器绕过检测 ✅ 需要 JavaScript 渲染的页面 - 完整执行页面脚本 ✅ 有验证码/人机验证的网站 - 模拟真实用户行为
工具列表
fetch_url- 智能获取(三层降级:Jina → 本地 → Playwright)fetch_url_with_jina- 强制使用 Jina Readerfetch_url_local- 强制使用本地解析器fetch_url_with_browser- 强制使用 Playwright 浏览器(突破访问限制)fetch_multiple_urls- 批量获取多个 URL
技术架构
智能降级策略
用户请求 URL ↓ 1. Jina Reader API (最快,成功率高)
c050126e5600OBSERVED · 2026-10-08Connect
Built from this server's own package name, version and transport as found in its source — not copied from anyone's documentation, so it cannot drift against a page we do not control.
claude mcp add mcp-web-reader -- npx -y [email protected]
{
"mcpServers": {
"mcp-web-reader": {
"command": "npx",
"args": [
"-y",
"[email protected]"
]
}
}
}Exposed tools (5)
5 read · 0 write · 0 destructive.
| Tool | Risk | Description |
|---|---|---|
fetch_multiple_urls | read | 批量获取多个URL的网页内容 |
fetch_url | read | 获取指定URL的网页内容,并转换为Markdown格式。默认使用Jina Reader,失败时自动切换到本地解析 |
fetch_url_local | read | 强制使用本地解析器获取网页内容(适用于简单网页或Jina不可用时) |
fetch_url_with_browser | read | 强制使用Playwright浏览器获取网页内容(适用于有访问限制的网站,如Cloudflare保护、验证码等) |
fetch_url_with_jina | read | 强制使用Jina Reader获取网页内容(适用于复杂网页) |
Trust audit
SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | PASS |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- declared (2 observation(s))
- Shell
- none-observed
- Dependencies
- not all pinned
- Secrets in source
- none-found
Findings (2)
@modelcontextprotocol/sdk, node-fetch, jsdom, turndown, playwright, @types/node, @types/jsdom, @types/turndown
Gates applied: no_behavioural_pass, no_license.
c050126e5600full audit observations/trust-audit/mcp-server/zacfire__web-reader.json · Report an issue / request a re-scanAudit history
Every audit this server has had. A grade with a past is a grade somebody is still checking.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-08 | c050126e5600 | SAFE | B | 89 | first audit |
Questions
What is the Web Reader MCP server?
让Claude等大语言模型轻松获取和解析任何网页内容,并转化为干净的Markdown。支持双引擎、批量处理,增强AI互联网信息处理能力。
What tools does Web Reader expose?
5 in total: 5 read-only, 0 that write, and 0 that can delete or overwrite. Every one is listed on this page with its risk.
Is Web Reader safe to connect to an agent?
The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean server reads B.
What credentials does Web Reader need?
No credential environment variables were found in its source, so it appears to need none.
How does Web Reader run?
It speaks stdio, so it runs as a local process your client starts. It is published on npm as mcp-web-reader at 2.0.0.
How current is this page?
The grade is for one exact copy of the source (c050126e5600), read on 2026-10-08. The repository is watched and re-audited when it changes.