Serve registration + TOML validation + test validation
Windows MCP
MCP Security & AuthA lightweight, open‑source MCP server that lets AI agents interact with Windows UI for file navigation, app control, input simulation, testing, and more.
Features
- Seamless native interaction with Windows UI elements (open apps, control windows, simulate user input)
- Works with any LLM without requiring computer‑vision or model‑specific fine‑tuning
- Rich toolset for keyboard/mouse automation and window/UI state capture
- Lightweight design with minimal dependencies and MIT‑licensed source code
- Customizable/extendable to fit specific automation needs
Recent releases
View all 10 releases →
Review required
v0.8.2
Mixed
Dependencies
v0.7.4
Bug fix
Fixed double caching of tree nodes, reducing COM calls per node from two to one and improving traversal speed.
Full changelog
Fixes
- Detected double caching of tree nodes, making 2 COM calls per node, now 1 COM call per node, further improved the tree traversal speed.
- Updated the MCP config for setting Windows-MCP in Claude Desktop from Windows Store.
- Handling UIA Errors Cleanly in UIA
- PowerShell Tool missing environment variables fix (Thanks to @JezaChen)
v0.7.1
Bug fix
Notable features
- PowerShell execution logic extracted into `PowerShellExecutor` class
- MSIX/App path resolutions added for native launching of Windows UWP applications
- Dependabot configuration added for weekly grouped package updates
Full changelog
Added
- Added PowerShell execution logic extraction into a clean, static
PowerShellExecutorclass for improved code organization and stability (#158) - Added MSIX App path resolutions to support natively launching MSIX / UWP Windows applications for AI agents (#126)
- Added Dependabot configuration for weekly and grouped updates to streamline package management (#145, #125)
- Added
WINDOWS_MCP_SCREENSHOT_SCALEenvironment variable to documentation and explicitly handle coordinate mismatches across multiple displays (#116) - Added
.idea/to.gitignoreto exclude JetBrains IDE configurations natively (#120) - Added dependency lock mapping for
cryptography<=46.0.6to guaranteewin_arm64ARM PyPI installation stability (#149)
Fixed
- Fixed process attachment
AttachThreadInput"Access Denied" errors when interacting with protected or elevated processes (#123) - Fixed graceful two-stage subprocess timeouts for Windows process trees to prevent orphaned tasks (#151)
- Fixed mouse coordinate mismatches by replacing
screenshot_sizewithscreenshot_original_sizefor precise desktop plotting (#116) - Fixed Snapshot crashes caused by
comtypesVARIANT marshaling on non-ASCII application UI layouts (#148) - Fixed UI rendering breakages by stripping out Unicode Private Use Area characters from tool readouts (#120)
- Fixed Notification tool failing to display toast messages silently (#121)
- Fixed missing scroll attributes in scrape tool (#119)
- Prevented child process freezes by ensuring
stdin=DEVNULLis passed to the shell loaders natively
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Install & Platforms
Install via
pip
shell-script
Platforms
windows