What is the hypruse MCP server?
Computer use for Hyprland: semantic desktop state over IPC, plus vision and native input
How to install hypruse
Copy-paste configuration for popular MCP clients.
HYPRUSE_SCREENSHOT_MODEHow captures are returned: 'file' writes to XDG_RUNTIME_DIR and returns the path, 'image' returns the image inline. Use 'image' for clients that render MCP images but cannot read files, such as Claude Desktop.
HYPRUSE_READONLYSet to 1 to expose only the observation tools (desktop, screenshot, zoom, ui, marks, binds, wait_for). The agent can see and narrate but cannot click, type, or launch.
HYPRUSE_CONFINERestrict input to a scope of windows and refuse everything outside it: 'launched' (only windows hypruse opened this session), 'class:firefox,kitty', or 'workspace:3,special:notes'. Unset means no confinement.
HYPRUSE_AUTH_GUARDRefuse to click or type into system authentication dialogs (polkit, keyring prompts). On by default; 'strict' also refuses password fields in ordinary windows; 0 disables it.
HYPRUSE_STRICTSet to 1 to refuse to act when the cursor or focused window moved since hypruse's last action, so the agent must re-read the desktop before retrying.
HYPRUSE_MARKSet to 1 to make the agent's presence legible: tag every window it opens 'hypruse-owned' and flash an on-screen notice when it opens a window or captures the screen.
HYPRUSE_CLIPBOARDSet to 1 to register the opt-in clipboard tool (never in read-only mode). Off by default because clipboards hold passwords.
HYPRUSE_JOURNALRecord every tool call, refusals included, as one NDJSON line: 1 writes to XDG_STATE_HOME/hypruse/journal.ndjson, or give a path. Read it back with 'hypruse journal'. Off by default.
HYPRUSE_JOURNAL_MAX_BYTESRotate the journal once it reaches this size, keeping one previous generation alongside it. Set 0 to never rotate.
HYPRUSE_JOURNAL_TEXTSet to 1 to record typed and copied text in the journal verbatim instead of as a length plus digest. Off by default because keystrokes are passwords; needed only to replay typing.
HYPRUSE_DRYRUNSet to 1 for a rehearsal: every acting tool validates its arguments and runs every trust guard, then reports what it would have done and delivers no input.
Related MCP servers
An AI-powered, safe database access gateway built on the Model Context Protocol (MCP).

hybridlog
Reads your own Garmin mirror: readiness, training load, muscle freshness, and read-only SQL.
Pleasanter MCP - You can perform data operations on Pleasanter directly from VSCode
View repository →MCP server for Incode IDV, providing identity verification tools for AI assistants.
View repository →Trending hip-hop artist momentum scores across four cultural dimensions.



