chrome_evaluate_js

Runs arbitrary JavaScript in the current Google Chrome tab and returns its result. Requires 'Allow JavaScript from Apple Events' in Chrome's View → Developer menu.

SERVERLocal SOURCElocal-mcp
High RISK CLASS
Category Execute
Parameters 11 required
Recommended Rate-limitedsee the rule below
Registry record Grade F, identity unverified Pull the record →

This record as markdown: /tools/com-local-mcp-local-mcp/chrome-evaluate-js.md

What chrome_evaluate_js does on Local

AI agents invoke chrome_evaluate_js to trigger actions in Local. What it does depends on the arguments the agent supplies, and its effects often reach beyond the immediate call: builds kicked off, notifications sent, workflows started.

ParameterTypeRequiredDescription
script string Yes

Parameters from the server's own tool schema.

Why chrome_evaluate_js is rated High

Executing arbitrary JavaScript in a browser tab has an enormous blast radius: it can exfiltrate cookies/credentials, manipulate the DOM, make authenticated fetch requests to any origin the tab is logged into, redirect the page, install persistent scripts, and more. This is a code-execution primitive with critical severity.

From the tool's definition "Runs arbitrary JavaScript in the current Google Chrome tab" — executes arbitrary code in a live browser context

Risk signalsAccepts freeform code/query input (script)

Questions about chrome_evaluate_js

What does the chrome_evaluate_js tool do? +

Runs arbitrary JavaScript in the current Google Chrome tab and returns its result. Requires 'Allow JavaScript from Apple Events' in Chrome's View → Developer menu. It is categorised as a Execute tool in the Local MCP Server, which means it can trigger actions or run processes. Use rate limits and argument validation.

What parameters does chrome_evaluate_js accept? +

chrome_evaluate_js accepts 1 parameter: script. Required: script. The full parameter table on this page comes from the server's own tool schema.

How do I enforce a policy on chrome_evaluate_js? +

Register the Local MCP server in PolicyLayer and add a rule for chrome_evaluate_js: allow, deny, rate-limit, or require approval. Point your MCP client at the PolicyLayer proxy URL and the rule is enforced on every call, before it reaches Local. Nothing to install.

What risk level is chrome_evaluate_js? +

chrome_evaluate_js is a Execute tool with high risk. Execute tools should be rate-limited and have argument validation enabled.

Can I rate-limit chrome_evaluate_js? +

Yes. Add a rate_limit block to the chrome_evaluate_js rule in your PolicyLayer policy. For example, setting max: 10 and window: 60 limits the tool to 10 calls per minute. Rate limits are tracked per agent session and reset automatically.

How do I block chrome_evaluate_js completely? +

Set action: deny in the PolicyLayer policy for chrome_evaluate_js. The AI agent will receive a policy violation error and cannot call the tool. You can also include a reason field to explain why the tool is blocked.

What MCP server provides chrome_evaluate_js? +

chrome_evaluate_js is provided by the Local MCP server (local-mcp). PolicyLayer sits as a proxy in front of this server to enforce policies before tool calls reach the server.

More on Local, and thousands of servers like it.

// THE MCP REGISTRY

PolicyLayer tracks 44,603 MCP servers and 515,000+ tools.

Every server has a live record: who publishes it, whether it answers without auth, its risk grade, every tool classified, the recommended policy. This page is one line of Local's. Pull the full record:

Teams ship this data inside their own products. See what a licence covers →

// GET IN TOUCH

Have a question or want to learn more? Send us a message.

Message sent.

We'll get back to you soon.