History of hypruse
io.github.IlyasKhallouki/hypruse · Registry status: active
Every published change to this entry, most recent first.
| 2026-10-09 | Declared version: 0.11.0 → 0.12.0 |
|---|---|
| 2026-10-09 | Last changed in the registry (raw): 2026-09-13 → 2026-10-08 |
| 2026-10-09 | First listed in the registry (raw): 2026-09-13 → 2026-10-08 |
| 2026-10-09 | Connection paths (source structure): {"packages":[{"registryType":"pypi","identifier":"hypruse","version":"0.11.0","runtimeHint":"uvx","transport":"stdio","environment":[{"name":"HYPRUSE_SCREENSHOT_MODE","description":"How captures are returned: 'file' writes to XDG_RUNTIME_DIR and returns the path, 'image' returns the image inline. Use 'image' for clients that render MCP images but cannot read files, such as Claude Desktop.","required":false,"secret":false},{"name":"HYPRUSE_READONLY","description":"Set to 1 to expose only the observation tools (desktop, screenshot, zoom, ui, marks, binds, wait_for). The agent can see and narrate but cannot click, type, or launch.","required":false,"secret":false},{"name":"HYPRUSE_CONFINE","description":"Restrict input to a scope of windows and refuse everything outside it: 'launched' (only windows hypruse opened this session), 'class:firefox,kitty', or 'workspace:3,special:notes'. Unset means no confinement.","required":false,"secret":false},{"name":"HYPRUSE_AUTH_GUARD","description":"Refuse to click or type into system authentication dialogs (polkit, keyring prompts). On by default; 'strict' also refuses password fields in ordinary windows; 0 disables it.","required":false,"secret":false},{"name":"HYPRUSE_STRICT","description":"Set to 1 to refuse to act when the cursor or focused window moved since hypruse's last action, so the agent must re-read the desktop before retrying.","required":false,"secret":false},{"name":"HYPRUSE_MARK","description":"Set to 1 to make the agent's presence legible: tag every window it opens 'hypruse-owned' and flash an on-screen notice when it opens a window or captures the screen.","required":false,"secret":false},{"name":"HYPRUSE_CLIPBOARD","description":"Set to 1 to register the opt-in clipboard tool (never in read-only mode). Off by default because clipboards hold passwords.","required":false,"secret":false},{"name":"HYPRUSE_JOURNAL","description":"Record every tool call, refusals included, as one NDJSON line: 1 writes to XDG_STATE_HOME/hypruse/journal.ndjson, or give a path. Read it back with 'hypruse journal'. Off by default.","required":false,"secret":false},{"name":"HYPRUSE_JOURNAL_MAX_BYTES","description":"Rotate the journal once it reaches this size, keeping one previous generation alongside it. Set 0 to never rotate.","required":false,"secret":false},{"name":"HYPRUSE_JOURNAL_TEXT","description":"Set to 1 to record typed and copied text in the journal verbatim instead of as a length plus digest. Off by default because keystrokes are passwords; needed only to replay typing.","required":false,"secret":false},{"name":"HYPRUSE_DRYRUN","description":"Set to 1 for a rehearsal: every acting tool validates its arguments and runs every trust guard, then reports what it would have done and delivers no input.","required":false,"secret":false}],"additional_arguments_declared":false}],"remotes":[]} → {"packages":[{"registryType":"pypi","identifier":"hypruse","version":"0.12.0","runtimeHint":"uvx","transport":"stdio","environment":[{"name":"HYPRUSE_SCREENSHOT_MODE","description":"How captures are returned: 'file' writes to XDG_RUNTIME_DIR and returns the path, 'image' returns the image inline. Use 'image' for clients that render MCP images but cannot read files, such as Claude Desktop.","required":false,"secret":false},{"name":"HYPRUSE_READONLY","description":"Set to 1 to expose only the observation tools (desktop, screenshot, zoom, ui, marks, binds, wait_for). The agent can see and narrate but cannot click, type, or launch.","required":false,"secret":false},{"name":"HYPRUSE_CONFINE","description":"Restrict input to a scope of windows and refuse everything outside it: 'launched' (only windows hypruse opened this session), 'class:firefox,kitty', or 'workspace:3,special:notes'. Unset means no confinement.","required":false,"secret":false},{"name":"HYPRUSE_AUTH_GUARD","description":"Refuse to click or type into system authentication dialogs (polkit, keyring prompts). On by default; 'strict' also refuses password fields in ordinary windows; 0 disables it.","required":false,"secret":false},{"name":"HYPRUSE_STRICT","description":"Set to 1 to refuse to act when the cursor or focused window moved since hypruse's last action, so the agent must re-read the desktop before retrying.","required":false,"secret":false},{"name":"HYPRUSE_MARK","description":"Set to 1 to make the agent's presence legible: tag every window it opens 'hypruse-owned' and flash an on-screen notice when it opens a window or captures the screen.","required":false,"secret":false},{"name":"HYPRUSE_CLIPBOARD","description":"Set to 1 to register the opt-in clipboard tool (never in read-only mode). Off by default because clipboards hold passwords.","required":false,"secret":false},{"name":"HYPRUSE_JOURNAL","description":"Record every tool call, refusals included, as one NDJSON line: 1 writes to XDG_STATE_HOME/hypruse/journal.ndjson, or give a path. Read it back with 'hypruse journal'. Off by default.","required":false,"secret":false},{"name":"HYPRUSE_JOURNAL_MAX_BYTES","description":"Rotate the journal once it reaches this size, keeping one previous generation alongside it. Set 0 to never rotate.","required":false,"secret":false},{"name":"HYPRUSE_JOURNAL_TEXT","description":"Set to 1 to record typed and copied text in the journal verbatim instead of as a length plus digest. Off by default because keystrokes are passwords; needed only to replay typing.","required":false,"secret":false},{"name":"HYPRUSE_DRYRUN","description":"Set to 1 for a rehearsal: every acting tool validates its arguments and runs every trust guard, then reports what it would have done and delivers no input.","required":false,"secret":false}],"additional_arguments_declared":false}],"remotes":[]} |
| 2026-10-09 | Package versions (raw): 0.11.0 → 0.12.0 |
| 2026-09-14 | Declared version: 0.10.0 → 0.11.0 |
| 2026-09-14 | Last changed in the registry (raw): 2026-08-31 → 2026-09-13 |
| 2026-09-14 | First listed in the registry (raw): 2026-08-31 → 2026-09-13 |
| 2026-09-14 | Connection paths (source structure): {"packages":[{"registryType":"pypi","identifier":"hypruse","version":"0.10.0","runtimeHint":"uvx","transport":"stdio","environment":[{"name":"HYPRUSE_SCREENSHOT_MODE","description":"How captures are returned: 'file' writes to XDG_RUNTIME_DIR and returns the path, 'image' returns the image inline. Use 'image' for clients that render MCP images but cannot read files, such as Claude Desktop.","required":false,"secret":false},{"name":"HYPRUSE_READONLY","description":"Set to 1 to expose only the observation tools (desktop, screenshot, zoom, ui, marks, binds, wait_for). The agent can see and narrate but cannot click, type, or launch.","required":false,"secret":false},{"name":"HYPRUSE_CONFINE","description":"Restrict input to a scope of windows and refuse everything outside it: 'launched' (only windows hypruse opened this session), 'class:firefox,kitty', or 'workspace:3,special:notes'. Unset means no confinement.","required":false,"secret":false},{"name":"HYPRUSE_AUTH_GUARD","description":"Refuse to click or type into system authentication dialogs (polkit, keyring prompts). On by default; 'strict' also refuses password fields in ordinary windows; 0 disables it.","required":false,"secret":false},{"name":"HYPRUSE_STRICT","description":"Set to 1 to refuse to act when the cursor or focused window moved since hypruse's last action, so the agent must re-read the desktop before retrying.","required":false,"secret":false},{"name":"HYPRUSE_MARK","description":"Set to 1 to make the agent's presence legible: tag every window it opens 'hypruse-owned' and flash an on-screen notice when it opens a window or captures the screen.","required":false,"secret":false},{"name":"HYPRUSE_CLIPBOARD","description":"Set to 1 to register the opt-in clipboard tool (never in read-only mode). Off by default because clipboards hold passwords.","required":false,"secret":false},{"name":"HYPRUSE_JOURNAL","description":"Record every tool call, refusals included, as one NDJSON line: 1 writes to XDG_STATE_HOME/hypruse/journal.ndjson, or give a path. Read it back with 'hypruse journal'. Off by default.","required":false,"secret":false},{"name":"HYPRUSE_JOURNAL_MAX_BYTES","description":"Rotate the journal once it reaches this size, keeping one previous generation alongside it. Set 0 to never rotate.","required":false,"secret":false},{"name":"HYPRUSE_JOURNAL_TEXT","description":"Set to 1 to record typed and copied text in the journal verbatim instead of as a length plus digest. Off by default because keystrokes are passwords; needed only to replay typing.","required":false,"secret":false},{"name":"HYPRUSE_DRYRUN","description":"Set to 1 for a rehearsal: every acting tool validates its arguments and runs every trust guard, then reports what it would have done and delivers no input.","required":false,"secret":false}],"additional_arguments_declared":false}],"remotes":[]} → {"packages":[{"registryType":"pypi","identifier":"hypruse","version":"0.11.0","runtimeHint":"uvx","transport":"stdio","environment":[{"name":"HYPRUSE_SCREENSHOT_MODE","description":"How captures are returned: 'file' writes to XDG_RUNTIME_DIR and returns the path, 'image' returns the image inline. Use 'image' for clients that render MCP images but cannot read files, such as Claude Desktop.","required":false,"secret":false},{"name":"HYPRUSE_READONLY","description":"Set to 1 to expose only the observation tools (desktop, screenshot, zoom, ui, marks, binds, wait_for). The agent can see and narrate but cannot click, type, or launch.","required":false,"secret":false},{"name":"HYPRUSE_CONFINE","description":"Restrict input to a scope of windows and refuse everything outside it: 'launched' (only windows hypruse opened this session), 'class:firefox,kitty', or 'workspace:3,special:notes'. Unset means no confinement.","required":false,"secret":false},{"name":"HYPRUSE_AUTH_GUARD","description":"Refuse to click or type into system authentication dialogs (polkit, keyring prompts). On by default; 'strict' also refuses password fields in ordinary windows; 0 disables it.","required":false,"secret":false},{"name":"HYPRUSE_STRICT","description":"Set to 1 to refuse to act when the cursor or focused window moved since hypruse's last action, so the agent must re-read the desktop before retrying.","required":false,"secret":false},{"name":"HYPRUSE_MARK","description":"Set to 1 to make the agent's presence legible: tag every window it opens 'hypruse-owned' and flash an on-screen notice when it opens a window or captures the screen.","required":false,"secret":false},{"name":"HYPRUSE_CLIPBOARD","description":"Set to 1 to register the opt-in clipboard tool (never in read-only mode). Off by default because clipboards hold passwords.","required":false,"secret":false},{"name":"HYPRUSE_JOURNAL","description":"Record every tool call, refusals included, as one NDJSON line: 1 writes to XDG_STATE_HOME/hypruse/journal.ndjson, or give a path. Read it back with 'hypruse journal'. Off by default.","required":false,"secret":false},{"name":"HYPRUSE_JOURNAL_MAX_BYTES","description":"Rotate the journal once it reaches this size, keeping one previous generation alongside it. Set 0 to never rotate.","required":false,"secret":false},{"name":"HYPRUSE_JOURNAL_TEXT","description":"Set to 1 to record typed and copied text in the journal verbatim instead of as a length plus digest. Off by default because keystrokes are passwords; needed only to replay typing.","required":false,"secret":false},{"name":"HYPRUSE_DRYRUN","description":"Set to 1 for a rehearsal: every acting tool validates its arguments and runs every trust guard, then reports what it would have done and delivers no input.","required":false,"secret":false}],"additional_arguments_declared":false}],"remotes":[]} |
| 2026-09-14 | Package versions (raw): 0.10.0 → 0.11.0 |
| 2026-09-08 | Connection paths (source structure): – → {"packages":[{"registryType":"pypi","identifier":"hypruse","version":"0.10.0","runtimeHint":"uvx","transport":"stdio","environment":[{"name":"HYPRUSE_SCREENSHOT_MODE","description":"How captures are returned: 'file' writes to XDG_RUNTIME_DIR and returns the path, 'image' returns the image inline. Use 'image' for clients that render MCP images but cannot read files, such as Claude Desktop.","required":false,"secret":false},{"name":"HYPRUSE_READONLY","description":"Set to 1 to expose only the observation tools (desktop, screenshot, zoom, ui, marks, binds, wait_for). The agent can see and narrate but cannot click, type, or launch.","required":false,"secret":false},{"name":"HYPRUSE_CONFINE","description":"Restrict input to a scope of windows and refuse everything outside it: 'launched' (only windows hypruse opened this session), 'class:firefox,kitty', or 'workspace:3,special:notes'. Unset means no confinement.","required":false,"secret":false},{"name":"HYPRUSE_AUTH_GUARD","description":"Refuse to click or type into system authentication dialogs (polkit, keyring prompts). On by default; 'strict' also refuses password fields in ordinary windows; 0 disables it.","required":false,"secret":false},{"name":"HYPRUSE_STRICT","description":"Set to 1 to refuse to act when the cursor or focused window moved since hypruse's last action, so the agent must re-read the desktop before retrying.","required":false,"secret":false},{"name":"HYPRUSE_MARK","description":"Set to 1 to make the agent's presence legible: tag every window it opens 'hypruse-owned' and flash an on-screen notice when it opens a window or captures the screen.","required":false,"secret":false},{"name":"HYPRUSE_CLIPBOARD","description":"Set to 1 to register the opt-in clipboard tool (never in read-only mode). Off by default because clipboards hold passwords.","required":false,"secret":false},{"name":"HYPRUSE_JOURNAL","description":"Record every tool call, refusals included, as one NDJSON line: 1 writes to XDG_STATE_HOME/hypruse/journal.ndjson, or give a path. Read it back with 'hypruse journal'. Off by default.","required":false,"secret":false},{"name":"HYPRUSE_JOURNAL_MAX_BYTES","description":"Rotate the journal once it reaches this size, keeping one previous generation alongside it. Set 0 to never rotate.","required":false,"secret":false},{"name":"HYPRUSE_JOURNAL_TEXT","description":"Set to 1 to record typed and copied text in the journal verbatim instead of as a length plus digest. Off by default because keystrokes are passwords; needed only to replay typing.","required":false,"secret":false},{"name":"HYPRUSE_DRYRUN","description":"Set to 1 for a rehearsal: every acting tool validates its arguments and runs every trust guard, then reports what it would have done and delivers no input.","required":false,"secret":false}],"additional_arguments_declared":false}],"remotes":[]} |
| 2026-09-01 | Declared version: 0.9.4 → 0.10.0 |
| 2026-09-01 | Last changed in the registry (raw): 2026-07-26 → 2026-08-31 |
| 2026-09-01 | First listed in the registry (raw): 2026-07-26 → 2026-08-31 |
| 2026-09-01 | Environment variable descriptions (raw): HYPRUSE_AUTH_GUARD=Refuse to click or type into system authentication dialogs (polkit, keyring prompts). On by default; 'strict' also refuses password fields in ordinary windows; 0 disables it. · HYPRUSE_CLIPBOARD=Set to 1 to register the opt-in clipboard tool (never in read-only mode). Off by default because clipboards hold passwords. · HYPRUSE_CONFINE=Restrict input to a scope of windows and refuse everything outside it: 'launched' (only windows hypruse opened this session), 'class:firefox,kitty', or 'workspace:3,special:notes'. Unset means no confinement. · HYPRUSE_MARK=Set to 1 to make the agent's presence legible: tag every window it opens 'hypruse-owned' and flash an on-screen notice when it opens a window or captures the screen. · HYPRUSE_READONLY=Set to 1 to expose only the observation tools (desktop, screenshot, zoom, ui, marks, binds, wait_for). The agent can see and narrate but cannot click, type, or launch. · HYPRUSE_SCREENSHOT_MODE=How captures are returned: 'file' writes to XDG_RUNTIME_DIR and returns the path, 'image' returns the image inline. Use 'image' for clients that render MCP images but cannot read files, such as Claude Desktop. · HYPRUSE_STRICT=Set to 1 to refuse to act when the cursor or focused window moved since hypruse's last action, so the agent must re-read the desktop before retrying. → HYPRUSE_AUTH_GUARD=Refuse to click or type into system authentication dialogs (polkit, keyring prompts). On by default; 'strict' also refuses password fields in ordinary windows; 0 disables it. · HYPRUSE_CLIPBOARD=Set to 1 to register the opt-in clipboard tool (never in read-only mode). Off by default because clipboards hold passwords. · HYPRUSE_CONFINE=Restrict input to a scope of windows and refuse everything outside it: 'launched' (only windows hypruse opened this session), 'class:firefox,kitty', or 'workspace:3,special:notes'. Unset means no confinement. · HYPRUSE_DRYRUN=Set to 1 for a rehearsal: every acting tool validates its arguments and runs every trust guard, then reports what it would have done and delivers no input. · HYPRUSE_JOURNAL=Record every tool call, refusals included, as one NDJSON line: 1 writes to XDG_STATE_HOME/hypruse/journal.ndjson, or give a path. Read it back with 'hypruse journal'. Off by default. · HYPRUSE_JOURNAL_MAX_BYTES=Rotate the journal once it reaches this size, keeping one previous generation alongside it. Set 0 to never rotate. · HYPRUSE_JOURNAL_TEXT=Set to 1 to record typed and copied text in the journal verbatim instead of as a length plus digest. Off by default because keystrokes are passwords; needed only to replay typing. · HYPRUSE_MARK=Set to 1 to make the agent's presence legible: tag every window it opens 'hypruse-owned' and flash an on-screen notice when it opens a window or captures the screen. · HYPRUSE_READONLY=Set to 1 to expose only the observation tools (desktop, screenshot, zoom, ui, marks, binds, wait_for). The agent can see and narrate but cannot click, type, or launch. · HYPRUSE_SCREENSHOT_MODE=How captures are returned: 'file' writes to XDG_RUNTIME_DIR and returns the path, 'image' returns the image inline. Use 'image' for clients that render MCP images but cannot read files, such as Claude Desktop. · HYPRUSE_STRICT=Set to 1 to refuse to act when the cursor or focused window moved since hypruse's last action, so the agent must re-read the desktop before retrying. |
| 2026-09-01 | Package versions (raw): 0.9.4 → 0.10.0 |
| 2026-09-01 | Environment variables (raw): HYPRUSE_SCREENSHOT_MODE, HYPRUSE_READONLY, HYPRUSE_CONFINE, HYPRUSE_AUTH_GUARD, HYPRUSE_STRICT, HYPRUSE_MARK, HYPRUSE_CLIPBOARD → HYPRUSE_SCREENSHOT_MODE, HYPRUSE_READONLY, HYPRUSE_CONFINE, HYPRUSE_AUTH_GUARD, HYPRUSE_STRICT, HYPRUSE_MARK, HYPRUSE_CLIPBOARD, HYPRUSE_JOURNAL, HYPRUSE_JOURNAL_MAX_BYTES, HYPRUSE_JOURNAL_TEXT, HYPRUSE_DRYRUN |
| 2026-08-26 | Description (raw): – → Computer use for Hyprland: semantic desktop state over IPC, plus vision and native input |
| 2026-08-16 | Last changed in the registry (raw): – → 2026-07-26 |
| 2026-08-16 | First listed in the registry (raw): – → 2026-07-26 |
| 2026-08-16 | Registry status message (raw): – → – |
| 2026-08-16 | Schema version of the raw record (raw): – → https://static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json |
| 2026-08-16 | Icon formats (raw): – → – |
| 2026-08-16 | Environment variable descriptions (raw): – → HYPRUSE_AUTH_GUARD=Refuse to click or type into system authentication dialogs (polkit, keyring prompts). On by default; 'strict' also refuses password fields in ordinary windows; 0 disables it. · HYPRUSE_CLIPBOARD=Set to 1 to register the opt-in clipboard tool (never in read-only mode). Off by default because clipboards hold passwords. · HYPRUSE_CONFINE=Restrict input to a scope of windows and refuse everything outside it: 'launched' (only windows hypruse opened this session), 'class:firefox,kitty', or 'workspace:3,special:notes'. Unset means no confinement. · HYPRUSE_MARK=Set to 1 to make the agent's presence legible: tag every window it opens 'hypruse-owned' and flash an on-screen notice when it opens a window or captures the screen. · HYPRUSE_READONLY=Set to 1 to expose only the observation tools (desktop, screenshot, zoom, ui, marks, binds, wait_for). The agent can see and narrate but cannot click, type, or launch. · HYPRUSE_SCREENSHOT_MODE=How captures are returned: 'file' writes to XDG_RUNTIME_DIR and returns the path, 'image' returns the image inline. Use 'image' for clients that render MCP images but cannot read files, such as Claude Desktop. · HYPRUSE_STRICT=Set to 1 to refuse to act when the cursor or focused window moved since hypruse's last action, so the agent must re-read the desktop before retrying. |
| 2026-08-16 | Environment variable formats (raw): – → – |
| 2026-08-16 | Delivery form (raw): – → package |
| 2026-08-16 | Remote hosts (raw): – → – |
| 2026-08-16 | Remote URLs (raw): – → – |
| 2026-08-16 | Runtime hints (raw): – → uvx |
| 2026-08-16 | Package versions (raw): – → 0.9.4 |
| 2026-08-16 | Package identifiers (raw): – → hypruse |
| 2026-08-16 | Repository subfolder (raw): – → – |
| 2026-08-16 | Repository platform (raw): – → github |
| 2026-08-16 | Path environment variables (raw): – → – |
| 2026-08-16 | Required secret headers (raw): – → – |
| 2026-08-06 | Declared version: – → 0.9.4 |
| 2026-08-06 | Repository URL listed: – → yes |
| 2026-08-06 | Path argument present: – → no |
| 2026-08-06 | Execution location: – → local |
| 2026-08-06 | Required secrets declared: – → no |
| 2026-08-06 | Package registries (raw): – → pypi |
| 2026-08-06 | Repository (raw): – → https://github.com/IlyasKhallouki/hypruse |
| 2026-08-06 | Path arguments (raw): – → – |
| 2026-08-06 | Transports (raw): – → stdio |
| 2026-08-06 | Required secret variables (raw): – → – |
| 2026-08-06 | Environment variables (raw): – → HYPRUSE_SCREENSHOT_MODE, HYPRUSE_READONLY, HYPRUSE_CONFINE, HYPRUSE_AUTH_GUARD, HYPRUSE_STRICT, HYPRUSE_MARK, HYPRUSE_CLIPBOARD |
tracevero · https://tracevero.com/mcp/io-github-ilyaskhallouki-hypruse/aenderungen