Agent skill

Moai Ref Aside Browser

by modu-ai in modu-ai/moai-adk

Safe-use reference for the optional Aside browser agent (the aside command-line tool and its MCP server), which works inside the operator's own logged-in browser.

Apache-2.0Auto-check passedAgent Workflows

Install Moai Ref Aside Browser

skills CLI
$ npx skills add modu-ai/moai-adk --skill moai-ref-aside-browser -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install modu-ai/moai-adk moai-ref-aside-browser --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/modu-ai/moai-adk.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.claude/skills/moai-ref-aside-browser .claude/skills/moai-ref-aside-browser && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
moai-ref-aside-browser
GitHub stars
1.2k
Token cost
~1.1k tokens
SKILL.md length
562 words
Files
1
Skills in repo
48
Repo updated
First seen
Licence
Apache-2.0

At a glance

Safe-use reference for the optional Aside browser agent (the aside command-line tool and its MCP server), which works inside the operator's own logged-in browser.

  • Works in 7 steps: Permission. Never pass --permission… → Guard by omission. The permission flag… → REPL limit. aside repl has no permission… → …
  • Tasks that involve Browser automation
  • SKILL.md covers Purpose, When to use, and when not, Who operates it and Safe-use rules, plus 2 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Moai Ref Aside Browser is an agent skill from modu-ai/moai-adk. Safe-use reference for the optional Aside browser agent (the aside command-line tool and its MCP server), which works inside the operator's own logged-in browser. Covers when the orchestrator may use it, how its permission modes work, and the rules that keep it read-only by default. Operated by the orchestrator alone. NOT for: public pages that a plain fetch can read, subagent work, or CI runs.

Its SKILL.md is about 1.1k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Agent Workflows, covering Browser automation, Subagents and MCP servers. It works with Model Context Protocol. The repository describes itself as: Agentic development harness for Claude Code — SPEC-driven plan/run/sync, TRUST 5 quality gates, model+effort routing, and Claude×GLM multi-LLM cost control. Single Go binary, 16… The licence is Apache-2.0.

When your agent uses it

  • Tasks that involve Browser automation
  • Tasks that involve Subagents
  • Tasks that involve MCP servers

Example prompts

  • “/moai-ref-aside-browser”

Workflow steps

7 steps, taken from the first numbered list in SKILL.md.

  1. Permission. Never pass --permission full-access, and never request full-access by any other route (settings, prompts, or tool arguments).
  2. Guard by omission. The permission flag takes one of three values; ask and guard are the same Guard mode, and omitting the flag also means…
  3. REPL limit. aside repl has no permission flag, so its read-only limit is discipline, not enforcement: restrict REPL work to navigation…
  4. Writes. Any step that changes state (submitting a form, posting, purchasing, deleting, sending, changing a setting, approving) needs…
  5. Install. Never install Aside and never run install tooling for it. If the operator wants Aside's own browser skill added to their coding…
  6. Secrets. The session carries the operator's logins, so never place credentials, cookies, tokens, or session data in any output, log, file…
  7. Output size. Redirect verbose REPL output to a file and bring only the exit code and a bounded tail into context.

What it can do on your machine

Read from SKILL.md and the folder at commit a2a184a. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Moai Ref Aside Browser loads about 1.1k tokens when it runs. Until then it costs about 106 tokens; SKILL.md has 562 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~106
When it runs · the whole SKILL.md, loaded when a task matches
~1.1k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from modu-ai/moai-adk at commit a2a184a, republished under its Apache-2.0 licence (© modu-ai). 562 words, ~1,102 tokens.

Download SKILL.mdSave it as .claude/skills/moai-ref-aside-browser/SKILL.md (or your agent's skills folder).
name
moai-ref-aside-browser
description
Safe-use reference for the optional Aside browser agent (the `aside` command-line tool and its MCP server), which works inside the operator's own logged-in browser. Covers when the orchestrator may use it, how its permission modes work, and the rules that keep it read-only by default. Operated by the orchestrator alone. NOT for: public pages that a plain fetch can read, subagent work, or CI runs.
when_to_use
Use before any step that runs `aside` or the Aside MCP tools, when registering the optional Aside MCP server, or when `/moai e2e --tool aside` is requested…
user-invocable
false
metadata.version
1.0.0
metadata.category
domain
metadata.status
active
metadata.tags
aside, browser, mcp, e2e, reference

Aside Browser (optional)

Purpose

Aside is an optional browser agent that acts inside the operator's own browser, so it sees every page the operator is signed in to, with the operator's credentials, cookies, and history. aside mcp starts an MCP server over stdio with two tools: exec runs the browser agent on logged-in sites, and repl runs Playwright-style JavaScript against open pages (120-second timeout; page starts unset, so call openTab(url) or getTabs() first). Flag and tool names here reflect one observed version; if a probe or a call fails, treat Aside as absent.

When to use, and when not

  • Use it for a task that needs a page behind the operator's login, which a fresh headless browser cannot reach, and only when the operator asked for it.
  • Do not use it for public pages (a plain fetch or the platform default browser tooling reads those), in CI, or because it happens to be installed.

Who operates it

Aside is operated by the orchestrator alone. A subagent never invokes Aside, neither the aside command nor the Aside MCP tools; a task that needs Aside returns a blocker report to the orchestrator, which runs the step itself or drops it.

Safe-use rules

  1. Permission. Never pass --permission full-access, and never request full-access by any other route (settings, prompts, or tool arguments).
  2. Guard by omission. The permission flag takes one of three values; ask and guard are the same Guard mode, and omitting the flag also means Guard. Prefer to omit --permission entirely so the default Guard applies.
  3. REPL limit. aside repl has no permission flag, so its read-only limit is discipline, not enforcement: restrict REPL work to navigation, reading, and screenshot operations.
  4. Writes. Any step that changes state (submitting a form, posting, purchasing, deleting, sending, changing a setting, approving) needs explicit operator confirmation, obtained by the orchestrator through its question channel before the step runs. Never infer consent from the task text. Treat every exec run as state-changing, because an agent-driven run can click, type, and submit.
  5. Install. Never install Aside and never run install tooling for it. If the operator wants Aside's own browser skill added to their coding agents, advise the operator to run aside skills install; the orchestrator does not run it.
  6. Secrets. The session carries the operator's logins, so never place credentials, cookies, tokens, or session data in any output, log, file, report, or prompt. Cite screenshots by path and carry only the minimum page text a step needs.
  7. Output size. Redirect verbose REPL output to a file and bring only the exit code and a bounded tail into context.
Show full SKILL.md (124 more words)Show less

Optional registration

Aside is never part of the default configuration. An operator who wants the MCP server registers it with one explicit command:

text
moai mcp add aside --command aside --args mcp --scope user

Omit --scope user to register it for one project instead. The registration is optional and never a prerequisite of any workflow in this skill.

Relation to /moai e2e

/moai e2e --tool aside is the only way Aside enters the e2e workflow: it is explicit-only, never auto-detected, never offered, and never recommended. The orchestrator loads this skill first and runs every Aside step itself. When Aside is absent, fails its availability probe (aside --version), is signed out, or is excluded (for example when CI=true), the workflow continues silently on the platform default toolchain, with no Aside-specific message, prompt, install attempt, or failure.

© modu-ai, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in .claude/skills/moai-ref-aside-browser of modu-ai/moai-adk.

Open the folder on GitHubat commit a2a184a

Compare with similar skills

Moai Ref Aside Browser next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Moai Ref Aside Browser compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Moai Ref Aside Browser this skillmodu-ai/moai-adk1.2k—~1.1kAutomated safety check: PassApache-2.0
Unbrowseunbrowse-ai/unbrowse778—~3.3kAutomated safety check: PassMIT
Turnstile Testingjumodada/Drissionpage-MCP-Server487—~1.7kAutomated safety check: PassCustom licence
Lightpandalightpanda-io/agent-skill101—~6kAutomated safety check: PassApache-2.0
Cross Origin Iframe Probejumodada/Drissionpage-MCP-Server487—~1.2kAutomated safety check: PassCustom licence
Claude in Chrome MCP Troubleshootingtrailofbits/skills7.4k4 repos~2.6kAutomated safety check: PassCC-BY-SA-4.0

Similar skills

  • Unbrowse

    unbrowse-ai/unbrowse

    Search and call websites through Unbrowse's hosted API or remote MCP, reuse indexed site tools, read pages, and learn missing routes in its cloud browser.

    778 GitHub stars~3.3k tokensUpdated 2 days ago
    Agent WorkflowsAuto-check passed
  • Turnstile Testing

    jumodada/Drissionpage-MCP-Server

    A skill your agent uses when testing an authorized Cloudflare Turnstile integration or operating an authorized production challenge with drissionpage-mcp.

    487 GitHub stars~1.7k tokensUpdated 24 days ago
    Agent WorkflowsAuto-check passed
  • Lightpanda

    lightpanda-io/agent-skill

    Lightpanda browser, drop-in replacement for Chrome-based browsing in any AI agent - faster and lighter for tasks without graphical rendering like data retrieval.

    101 GitHub stars~6k tokensUpdated 2 days ago
    Agent WorkflowsAuto-check passed
  • Cross Origin Iframe Probe

    jumodada/Drissionpage-MCP-Server

    A skill your agent uses when a drissionpage-mcp task targets an iframe such as a payment widget, challenge, SSO flow, or embedded checkout.

    487 GitHub stars~1.2k tokensUpdated 24 days ago
    Agent WorkflowsAuto-check passed
  • Official

    Diagnoses why the Claude in Chrome MCP tools report the browser extension as not connected, with macOS-specific checks and a fix for the Claude.app native host conflict.

    7.4k GitHub starsUsed in 4 repos~2.6k tokens
    Agent WorkflowsAuto-check passed
  • Vibe Kanban

    aiskillstore/marketplace

    Manage AI coding agents on a visual Kanban board. An agent skill from aiskillstore/marketplace.

    430 GitHub stars~4.4k tokensUpdated yesterday
    Agent WorkflowsAuto-check: notes

More from modu-ai/moai-adk

All 48 skills in this repo
  • Builds hand-editable SVG diagrams from computed layout coordinates, lints the source and renders a 2x PNG, with rules for when mermaid is the better choice.

    1.2k GitHub stars~5.2k tokensUpdated today
    Auto-check: notes
  • MoAI Foundation Core

    modu-ai/moai-adk

    Reference for MoAI-ADK's core development principles: TRUST 5 quality gates, SPEC-first domain-driven workflow, agent delegation and token budgeting.

    1.2k GitHub stars~5k tokensUpdated today
    Auto-check passed
  • MoAI SPEC Workflow

    modu-ai/moai-adk

    Manages SPEC documents for MoAI-ADK development, with GEARS or EARS requirement notation, acceptance criteria and a link into the Plan-Run-Sync workflow.

    1.2k GitHub stars~5.1k tokensUpdated today
    Auto-check passed
  • MoAI TDD Workflow

    modu-ai/moai-adk

    Drives test-first development through the RED, GREEN, REFACTOR cycle, with a config switch that selects between TDD and a DDD workflow for existing code.

    1.2k GitHub stars~3.1k tokensUpdated today
    Auto-check passed
  • MoAI Worktree Management

    modu-ai/moai-adk

    Gives each SPEC its own Git worktree with a registry of active workspaces, base-branch sync and cleanup of merged ones, inside the MoAI-ADK workflow.

    1.2k GitHub stars~3.9k tokensUpdated today
    Auto-check passed
  • Watches a pull request's CI checks after creation, separates required from auxiliary failures, applies limited safe fixes and escalates anything semantic to you.

    1.2k GitHub stars~2.4k tokensUpdated today
    Auto-check: notes

Questions about Moai Ref Aside Browser

What does Moai Ref Aside Browser do?

Safe-use reference for the optional Aside browser agent (the aside command-line tool and its MCP server), which works inside the operator's own logged-in browser. Moai Ref Aside Browser is an agent skill from modu-ai/moai-adk. Safe-use reference for the optional Aside browser agent (the aside command-line tool and its MCP server), which works inside the operator's own logged-in browser.

When should I use Moai Ref Aside Browser?

Moai Ref Aside Browser fits situations like: tasks that involve Browser automation; tasks that involve Subagents; tasks that involve MCP servers.

How do I install Moai Ref Aside Browser in Claude Code?

Run `npx skills add modu-ai/moai-adk --skill moai-ref-aside-browser -a claude-code`. Or copy the skill folder (.claude/skills/moai-ref-aside-browser in modu-ai/moai-adk) into .claude/skills/moai-ref-aside-browser in your project. Claude Code loads it when a task matches its description.

How do I install Moai Ref Aside Browser in Codex?

Run `npx skills add modu-ai/moai-adk --skill moai-ref-aside-browser -a codex`. Or copy the skill folder (.claude/skills/moai-ref-aside-browser in modu-ai/moai-adk) into .agents/skills/moai-ref-aside-browser in your project. Codex loads it when a task matches its description.

Can I use Moai Ref Aside Browser in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add modu-ai/moai-adk --skill moai-ref-aside-browser -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/moai-ref-aside-browser, .gemini/skills/moai-ref-aside-browser, .github/skills/moai-ref-aside-browser and .opencode/skills/moai-ref-aside-browser in your project.

What does Moai Ref Aside Browser need to run?

SKILL.md names no scripts, command-line tools or credentials: Moai Ref Aside Browser is instructions for the agent only.

Does Moai Ref Aside Browser access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Moai Ref Aside Browser safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Moai Ref Aside Browser use?

Moai Ref Aside Browser is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Moai Ref Aside Browser use?

About 1.1k tokens (SKILL.md is roughly 4.4k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Moai Ref Aside Browser?

Skills that share tags, products or a category with Moai Ref Aside Browser: Unbrowse (unbrowse-ai/unbrowse, 778 stars), Turnstile Testing (jumodada/Drissionpage-MCP-Server, 487 stars), Lightpanda (lightpanda-io/agent-skill, 101 stars) and Cross Origin Iframe Probe (jumodada/Drissionpage-MCP-Server, 487 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Moai Ref Aside Browser?

modu-ai (a GitHub organization) maintains it in modu-ai/moai-adk, which has 1,230 GitHub stars. The repository holds 48 skills in this directory. The repository was last updated on October 8, 2026.

Source: modu-ai/moai-adk on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.