This skill should be used when the user asks to "bypass bot detection", "avoid CAPTCHA", "stealth browser automation", "undetected playwright", "bypass Google bot check", "rebrowser-playwright", or…
Install the "playwright-bot-bypass" agent skill from https://github.com/greekr4/playwright-bot-bypass/tree/main/skills/playwright-bot-bypass into .claude/skills/playwright-bot-bypass/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "playwright-bot-bypass", then confirm the skill loads.
Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
Type this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
skills CLI
$ npx skills add greekr4/playwright-bot-bypass --skill playwright-bot-bypass -a codex
Project install goes to .agents/skills/; add -g for ~/.codex/skills/.
Install the "playwright-bot-bypass" agent skill from https://github.com/greekr4/playwright-bot-bypass/tree/main/skills/playwright-bot-bypass into .agents/skills/playwright-bot-bypass/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "playwright-bot-bypass", then confirm the skill loads.
Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
skills CLI
$ npx skills add greekr4/playwright-bot-bypass --skill playwright-bot-bypass -a cursor
Project install goes to .agents/skills/; add -g for ~/.cursor/skills/.
Install the "playwright-bot-bypass" agent skill from https://github.com/greekr4/playwright-bot-bypass/tree/main/skills/playwright-bot-bypass into .cursor/skills/playwright-bot-bypass/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "playwright-bot-bypass", then confirm the skill loads.
Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
skills CLI
$ npx skills add greekr4/playwright-bot-bypass --skill playwright-bot-bypass -a gemini-cli
Project install goes to .agents/skills/; add -g for ~/.gemini/skills/.
Install the "playwright-bot-bypass" agent skill from https://github.com/greekr4/playwright-bot-bypass/tree/main/skills/playwright-bot-bypass into .gemini/skills/playwright-bot-bypass/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "playwright-bot-bypass", then confirm the skill loads.
Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
Installs for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
skills CLI
$ npx skills add greekr4/playwright-bot-bypass --skill playwright-bot-bypass -a github-copilot
Project install goes to .agents/skills/; add -g for ~/.copilot/skills/.
Install the "playwright-bot-bypass" agent skill from https://github.com/greekr4/playwright-bot-bypass/tree/main/skills/playwright-bot-bypass into .github/skills/playwright-bot-bypass/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "playwright-bot-bypass", then confirm the skill loads.
GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
skills CLI
$ npx skills add greekr4/playwright-bot-bypass --skill playwright-bot-bypass -a opencode
OpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
Install the "playwright-bot-bypass" agent skill from https://github.com/greekr4/playwright-bot-bypass/tree/main/skills/playwright-bot-bypass into .opencode/skills/playwright-bot-bypass/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "playwright-bot-bypass", then confirm the skill loads.
OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
Facts
Skill name
playwright-bot-bypass
GitHub stars
201
Token cost
~3.4k tokens
SKILL.md length
1,108 words
Files
9 (incl. scripts)
Skills in repo
1
Repo updated
First seen
Licence
MIT
At a glance
This skill should be used when the user asks to "bypass bot detection", "avoid CAPTCHA", "stealth browser automation", "undetected playwright", "bypass Google bot check", "rebrowser-playwright", or…
Works in 3 steps: Install → Create stealth-test.mjs → Run
Asks to bypass bot detection
SKILL.md covers How Detection Is Defeated (and…, Prerequisites, Quick Start and Using the Template (Recommended), plus 7 more sections
Runs JavaScript scripts from its folder; calls npm, node and pip; reaches bot.sannysoft.com and google.com
What it does
Playwright Bot Bypass is an agent skill from greekr4/playwright-bot-bypass. This skill should be used when the user asks to "bypass bot detection", "avoid CAPTCHA", "stealth browser automation", "undetected playwright", "bypass Google bot check", "rebrowser-playwright", or needs to automate websites that detect and block bots.
Its SKILL.md is about 3.4k tokens, which your agent loads only when the skill is triggered. The skill folder holds 10 other files, including scripts (for example `package-lock.json` and `package.json`).
It sits in Testing & QA, covering Browser testing and Browser automation. It works with Playwright. The repository describes itself as: Claude Code skill to bypass bot detection (Google CAPTCHA, etc.). The licence is MIT.
When your agent uses it
Asks to bypass bot detection
Stealth browser automation
Undetected playwright
Bypass Google bot check
Example prompts
“bypass bot detection”
“avoid CAPTCHA”
“stealth browser automation”
“/playwright-bot-bypass”
Requirements
Node.js
Workflow steps
3 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit 26efbde. It shows what the files ask for, not the result of running them.
Tool permissions
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Runs code
Ships 2 files in scripts/ (JavaScript), which the agent can run.
Shell commands in SKILL.md call:
npm
node
pip
From the folder's file list and the shell code blocks in SKILL.md.
Network
Hosts in commands or code, which the agent is likely to contact:
bot.sannysoft.com
google.com
Also links to:
github.com
From URLs in SKILL.md, links to its own repository left out.
Credentials
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Context cost
Playwright Bot Bypass loads about 3.4k tokens when it runs. Until then it costs about 69 tokens; SKILL.md has 1,108 words of instructions outside code blocks.
Always· name and description, kept in context so the agent knows when to use it
~69
When it runs· the whole SKILL.md, loaded when a task matches
~3.4k
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
Safety
Auto-check passed
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.
Download SKILL.mdSave it as .claude/skills/playwright-bot-bypass/SKILL.md (or your agent's skills folder). This skill also uses 8 other files; get the full folder from GitHub.
name
playwright-bot-bypass
description
This skill should be used when the user asks to "bypass bot detection", "avoid CAPTCHA", "stealth browser automation", "undetected playwright", "bypass Google bot check", "rebrowser-playwright", or needs to automate websites that detect and block bots.
version
2.2.0
Playwright Bot Bypass
Reduce bot detection using rebrowser-playwright + real headed Chrome. Passes fingerprint checkers (bot.sannysoft.com, areyouheadless) and avoids triggering CAPTCHAs on Google. Not a guaranteed bypass for CDP/runtime-aware enterprise bot managers — see "Detection Coverage" for measured results.
Authorized use only. This is for QA, accessibility testing, and research on sites you own or are permitted to test. Respect each site's Terms of Service, robots.txt, and applicable law. Do not use it to bypass paywalls, abuse rate limits, or scrape against a site's stated wishes.
How Detection Is Defeated (and by which layer)
Evasion comes from three layers, not one — most of it is the real browser, not hand-written JS:
rebrowser (reports false; we do NOT delete it — undefined is itself a tell)
WebGL Renderer
SwiftShader (software)
channel:'chrome' + headed mode (real GPU)
User Agent
Contains "HeadlessChrome"
channel:'chrome' (real Chrome UA) — no JS override
Canvas fingerprint
Software-rendered tell
headed real Chrome (genuine GPU canvas) — no JS noise
navigator.plugins
Empty array
headed real Chrome (genuine PluginArray) — no JS fake
navigator.languages
['en-US'] only
locale option (native, worker-consistent — no JS getter)
Why so little hand-written JS? Across v2.1/v2.2 the old fake-PluginArray, canvas-noise, hardcoded-hardwareConcurrency, permissions-override, webdriver delete, and navigator.languages getter were all removed — every one created a detectable inconsistency (own-property tells, worker mismatches, undefined webdriver, an Illegal invocation crash). v2.2 keeps exactly two active measures: strip Playwright's __pwInitScripts artifact, and enable rebrowser's Runtime-fix. Everything else is the genuine, self-consistent real browser. Less faking = more consistent = harder to detect.
Prerequisites
Node.js 18+ with ESM support (.mjs files)
Google Chrome installed (not just Chromium)
Headed mode required (headless: false) — no display = no stealth
Verify Chrome is installed:
bash
# macOS
/Applications/Google\ Chrome.app/Contents/MacOS/Google\ Chrome --version
# Windows
"C:\Program Files\Google\Chrome\Application\chrome.exe" --version
# Linux
google-chrome --version
Quick Start
1. Install
bash
npm init -y && npm install rebrowser-playwright
2. Create stealth-test.mjs
javascript
import os from 'node:os';
import path from 'node:path';
// Enable rebrowser's Runtime.enable fix BEFORE importing the library.
process.env.REBROWSER_PATCHES_RUNTIME_FIX_MODE ??= 'addBinding';
const { chromium } = await import('rebrowser-playwright');
const browser = await chromium.launch({
headless: false, // headed = real GPU/canvas
channel: 'chrome', // real Chrome = real UA/WebGL/plugins
args: ['--disable-blink-features=AutomationControlled']
});
// `locale` sets navigator.languages + Accept-Language natively & consistently.
const context = await browser.newContext({ locale: 'ko-KR' });
// The ONLY init script: strip Playwright's main-world signature. Touch NOTHING
// on navigator — the real browser's values are already genuine & consistent.
await context.addInitScript(() => {
for (const k of Object.getOwnPropertyNames(window)) {
if (/^__pw|pwInitScripts|playwright/i.test(k)) {
try { delete window[k]; } catch {}
}
}
if (!window.chrome) window.chrome = {};
});
const page = await context.newPage();
try {
await page.goto('https://bot.sannysoft.com', { waitUntil: 'networkidle' });
const out = path.join(os.tmpdir(), 'stealth-test.png');
await page.screenshot({ path: out });
console.log(`Screenshot saved: ${out}`);
} finally {
await browser.close();
}
3. Run
bash
node stealth-test.mjs
Using the Template (Recommended)
The scripts/stealth-template.mjs provides a reusable factory with all patches pre-applied:
The template (v2.2) keeps the active surface to exactly two measures:
Measure
Why
Strip window.__pwInitScripts / __playwright* (init script, every nav)
Removes the deterministic isPlaywright signature detectors key on
REBROWSER_PATCHES_RUNTIME_FIX_MODE=addBinding (auto-set before import)
Hides the CDP Runtime.enable headless leak
It touches nothing on navigator. Everything else is delegated to the real browser (channel:'chrome' + headed): genuine User-Agent, WebGL/GPU renderer, canvas fingerprint, PluginArray, self-consistent permission/hardware values, and (via the locale option) native worker-consistent navigator.languages + Accept-Language.
Removed across v2.1/v2.2 (each was net-negative — faked values inconsistently with the real environment): fake navigator.plugins, canvas getImageData noise, hardcoded hardwareConcurrency/deviceMemory, outerWidth/Height offset, the permissions override (crashed with Illegal invocation), the navigator.webdriver delete (made it undefined — a tell), and the navigator.languages getter (own-property + worker-mismatch tells).
Launch arg: --disable-blink-features=AutomationControlled. --no-sandbox is opt-in ({ noSandbox: true }) — it is both a security risk and an automation signal, so it is off by default.
Heavy SPAs (TikTok/IG/FB) may print non-fatal [rebrowser-patches] cannot get world warnings under addBinding mode — the page still loads. Switch to REBROWSER_PATCHES_RUNTIME_FIX_MODE=alwaysIsolated to silence them if needed.
Honest, tested results. v2.2's artifact-strip + Runtime-fix flipped every fingerprint/automation detector to pass:
Detector
Result
Note
bot.sannysoft.com
✅ all green
webdriver false, real WebGL/UA/plugins
arh.antoinevastel.com/bots/areyouheadless
✅ "not Chrome headless"
hmaker.github.io/selenium-detector
✅ "Passing"
no chromedriver
bot-detector.rebrowser.net
✅ 0 red
__pwInitScripts stripped, no Runtime leak, webdriver false
deviceandbrowserinfo.com/are_you_a_bot
✅ "You are human!"
isBot:false, isPlaywright:false
browserscan.net/bot-detection
✅ "Normal"
CDP test passes (Runtime-fix)
iphey.com
✅ "Trustworthy"
was "Unreliable" before v2.2
creepjs
✅ 0% headless / 0% stealth
fuzzy "38% like headless" is not a detection
nowsecure.nl (Cloudflare Turnstile)
⚠️ interactive challenge shown
behavioral/IP gate — not a fingerprint check; not auto-passed
Reliability: 9/9 repeat runs clean (the __pwInitScripts strip held across every navigation).
Show full SKILL.md (446 more words)Show less
How v2.2 achieves this (and the one thing it can't fix)
Two levers, both built into createStealthBrowser():
Artifact strip — an init script deletes window.__pwInitScripts / __playwright* (the deterministic isPlaywright signature) on every navigation.
REBROWSER_PATCHES_RUNTIME_FIX_MODE=addBinding — set automatically before import; hides the CDP Runtime.enable leak.
The residual leak:window.__playwright_builtins__ is a separate, non-configurable Playwright global that cannot be deleted or redefined. None of the detectors above key on it today, but a future detector could. No rebrowser version (you're on the latest, 1.52.0) removes it — tracked upstream in rebrowser-patches#110, open with no fix.
Takeaway: clean against fingerprint + automation-framework detection. Still not a guaranteed bypass for behavioral/IP systems (Cloudflare Turnstile, DataDome, Kasada) or login walls. For those, add residential IPs + real interaction, or switch engines — patchright (drop-in) or nodriver (structurally avoids the whole CDP/automation-protocol class).
Real community sites (single logged-out load, residential IP, 2026-06-10)
Tested whether real sites bot-block a v2.2 page load (NOT a login judgment):
Site
Result
Reddit, YouTube, Pinterest, Threads, X (direct URL), Quora, TikTok
🟢 content fully loaded — no bot challenge, no CAPTCHA
Instagram, Facebook, LinkedIn
🟡 content shell loads behind the standard logged-out login modal — NOT a bot block / checkpoint / HTTP 999
Key result: none returned a bot challenge or hard block. The "hardest" sites (IG/FB/LinkedIn) served the normal logged-out human experience (a login modal over visible content), which means the stealth passed as a real user. Caveat: this is one load each on a clean residential IP. At volume, IG/FB/LinkedIn enforce datr-cookie aging, HTTP 999, and rate limits — those are IP/account problems, not fingerprint problems, and this skill does not address them. TikTok's signed-API actions (beyond profile view) also still need a warmed session.
Limitations
Requires headless: false (headed mode with display)
Needs real Google Chrome installed (channel: 'chrome')
Some sites may still detect based on behavior patterns — use humanDelay, humanType, simulateMouseMovement
Does not bypass CAPTCHAs, only prevents triggering them
TLS/JA3 fingerprint is handled by channel: 'chrome' (uses real Chrome binary)
__pwInitScripts leak (see Detection Coverage) is unfixable at the skill level — it's inherent to rebrowser-playwright 1.52.0
Python Support
undetected-chromedriver (Recommended)
bash
pip install undetected-chromedriver
python
import undetected_chromedriver as uc
# Match your Chrome version: check chrome://version
driver = uc.Chrome() # auto-detects version
driver.get("https://www.google.com")
search_box = driver.find_element("name", "q")
search_box.send_keys("your search query")
search_box.submit()
Python playwright-stealth only patches at JS level — WebGL still shows SwiftShader. Use undetected-chromedriver instead.
Alternative: Call Node.js from Python
python
import subprocess
result = subprocess.run(['node', 'stealth-script.mjs', query], capture_output=True)
Troubleshooting
Problem
Fix
ERR_MODULE_NOT_FOUND
Run npm install rebrowser-playwright in the same directory as your script
Browser not opening
Verify Chrome is installed (see Prerequisites)
WebGL shows SwiftShader
You're effectively headless / GPU-less. Run headed (headless: false) with channel: 'chrome' on a machine with a real GPU; SwiftShader is the software fallback, not an import issue
Still getting detected
Add simulateMouseMovement() and humanDelay() between actions
Process hangs
Ensure browser.close() is in a finally block
SyntaxError: await
File must be .mjs or have "type": "module" in package.json
Playwright Bot Bypass next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
Playwright Bot Bypass compared with similar skills
Skill
Stars
Used in
Tokens
Auto-check
Licence
Repo updated
Playwright Bot Bypass this skillgreekr4/playwright-bot-bypass
Capture headless-Chrome screenshots of the tingly-box frontend (running locally in mock mode) so frontend changes can be visually verified in environments without a real browser.
This skill should be used when the user asks to "bypass bot detection", "avoid CAPTCHA", "stealth browser automation", "undetected playwright", "bypass Google bot check", "rebrowser-playwright", or…. Playwright Bot Bypass is an agent skill from greekr4/playwright-bot-bypass. This skill should be used when the user asks to "bypass bot detection", "avoid CAPTCHA", "stealth browser automation", "undetected playwright", "bypass Google bot check", "rebrowser-playwright", or needs to automate websites that detect and block bots.
When should I use Playwright Bot Bypass?
Playwright Bot Bypass fits situations like: asks to bypass bot detection; stealth browser automation; undetected playwright; bypass Google bot check.
How do I install Playwright Bot Bypass in Claude Code?
Run `npx skills add greekr4/playwright-bot-bypass --skill playwright-bot-bypass -a claude-code`. Or copy the skill folder (skills/playwright-bot-bypass in greekr4/playwright-bot-bypass) into .claude/skills/playwright-bot-bypass in your project. Claude Code loads it when a task matches its description.
How do I install Playwright Bot Bypass in Codex?
Run `npx skills add greekr4/playwright-bot-bypass --skill playwright-bot-bypass -a codex`. Or copy the skill folder (skills/playwright-bot-bypass in greekr4/playwright-bot-bypass) into .agents/skills/playwright-bot-bypass in your project. Codex loads it when a task matches its description.
Can I use Playwright Bot Bypass in Cursor, Gemini CLI or GitHub Copilot?
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add greekr4/playwright-bot-bypass --skill playwright-bot-bypass -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/playwright-bot-bypass, .gemini/skills/playwright-bot-bypass, .github/skills/playwright-bot-bypass and .opencode/skills/playwright-bot-bypass in your project.
What does Playwright Bot Bypass need to run?
Going by SKILL.md and its folder, Playwright Bot Bypass needs JavaScript for the scripts in its folder and the command-line tools its instructions call (npm, node and pip). Our summary lists: Node.js.
Does Playwright Bot Bypass access the network?
SKILL.md names 3 domains. In commands or code: bot.sannysoft.com and google.com; the agent is likely to contact these when it follows the instructions. As links in the text: github.com. This is read from the text; nothing was executed.
Is Playwright Bot Bypass safe to install?
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.
What licence does Playwright Bot Bypass use?
Playwright Bot Bypass is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
How many tokens does Playwright Bot Bypass use?
About 3.4k tokens (SKILL.md is roughly 14k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
What are the alternatives to Playwright Bot Bypass?
Skills that share tags, products or a category with Playwright Bot Bypass: playwright-cli Browser Automation (github/gh-aw, 5.4k stars), Playwright Skill (lackeyjb/playwright-skill, 3.2k stars), Playwright CLI (testdino-hq/playwright-skill, 390 stars) and UI Preview (tingly-dev/tingly-box, 351 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
Who maintains Playwright Bot Bypass?
greekr4 (a GitHub user) maintains it in greekr4/playwright-bot-bypass, which has 201 GitHub stars. The repository was last updated on August 27, 2026.
Source: greekr4/playwright-bot-bypass on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.