Skip to content

Repository files navigation

Computer MCP — Let ChatGPT use your local tools.

Computer MCP product website

This repository owns the static product website published at computer-mcp.github.io. Product code, architecture, operator documentation, issues, and releases live in the main Computer MCP repository.

The site is intentionally independent from the Swift repository. It has its own static build, accessibility checks, browser-behavior tests, link validation, and GitHub Pages deployment. It does not use a custom domain.

Local development

Use Node.js 22 or newer and Python 3.11 or newer:

npm ci
npm run dev

Run every repository gate:

npm run catalog:check-policy
npm run brand:check
npm run format:check
npm run check:html
npm run build
npm run check:links
npm run test:install
npm test

The production build is written to dist/. GitHub Pages deploys only that artifact from the official repository's main branch after validation and catalog reconciliation.

Link validation retries transient HTTP errors with bounded concurrency. When an official GitHub repository, file, directory, release or security-policy link returns a server error, it verifies the corresponding public target through the GitHub API. Client errors, missing targets and API failures still fail validation. GH_TOKEN or GITHUB_TOKEN can provide API authentication; the token is sent only to the GitHub API. Workflows use their repository token for read-only API requests. Content verification covers main, master and full commit hashes; other content refs retain HTTP validation.

public/release.json binds the deployed site to the product's delivered commit and release tag. The private website package version describes this build project, not the product version. After the main repository publishes an accepted release, run npm run release:update -- vX.Y.Z to import its release.json asset. The importer verifies the official repository, public stable release, tag commit and GitHub asset digest; it refuses version regressions and changed identities for an existing version. It never derives a release from an installed App or local source checkout. Commit the generated record with the website delivery.

npm run release:check checks the local record without changing it. npm run release:verify-public -- vX.Y.Z also compares it with the official public asset. Historical releases without a delivery-record asset retain their existing record until the next product delivery. Tests read the record rather than maintain another product-version constant.

The plugin catalog publisher generates a separate versioned snapshot of verified current official plugin releases: the latest stable and any newer prerelease for each repository. Host and plugin releases are paired; discovery does not offer historical compatibility fallback. Run npm run catalog:update -- --use-gh-auth to produce public/plugins/index.json using existing GitHub CLI authentication, or provide GH_TOKEN/GITHUB_TOKEN in the process environment. The publisher also works without authentication within GitHub's public API limits. It downloads and verifies release archives without running package code. npm run catalog:check-policy and npm run catalog:test run offline; npm run catalog:check validates a generated snapshot. Automatic publication requires a complete verified snapshot committed to main; a missing seed fails Pages publication before upload and preserves the deployed site. Runs reconcile hourly, on source pushes and on manual workflow dispatch, persist changed generations and deploy one complete artifact. See the plugin catalog contract for provenance, withdrawals, resource bounds, atomic updates and installation trust.

Content boundaries

  • Keep claims aligned with behavior demonstrated in the main repository.
  • Label advanced Codex orchestration as experimental.
  • Present official Codex Remote as the preferred first-party choice for ordinary remote Codex control.
  • Do not add testimonials, customer logos, usage statistics, or compatibility claims without verifiable evidence.
  • Keep the security model explicit: gateway policy decides whether a capability is available; consent decides whether an allowed higher-risk action may proceed now.

See CONTRIBUTING.md before opening a change.

Brand and copy

Product Identity and BRAND.md in the main repository own positioning and shared identity. DESIGN.md records their website-specific composition, tokens, responsive behavior and rendered references.

The homepage leads with “Let ChatGPT use your local tools.” and gives CLI, Codex, MCP and Skills equal placement. It explains independent host connections and optional Codex integration. Main-repository documentation owns capability and permission facts; website copy follows it.

npm run brand:check verifies the imported stable copy and exact delivery against public/brand/brand.lock.json. Update that delivery with the main repository's python3 Scripts/brand.py sync ../computer-mcp.github.io; then commit the synchronized files. npm run assets:build checks the lock and share-card dimensions and copies the accepted card to public/og-image.png. The renderer remains in the main repository.

About

Computer MCP — Let ChatGPT use your local tools. Product guide, verified downloads and plugin catalog.

Topics

Resources

Contributing

Security policy

Stars

0 stars

Watchers

0 watching

Forks

Releases

Packages

Used by

Contributors

Languages