UIAutomator2 MCP Server
PYPI · UIAUTOMATOR2-MCP-SERVER · SCANNED SEP 20
Android mobile automation with uiautomator2. AI bot for taps, swipes, apps, XPath testing, RPA.
Available components
How this component scores in each security and reliability category. Every signal is checked automatically from public evidence about the published package, including repeated runs of it in an isolated sandbox, and we only credit what we can confirm. How we score → Why this is hard to score →
Supply Chain Security49
- Malware scan not yet available for this package.Unverified
- No known CVEs affecting this package version or its production dependencies.Pass
- Runs setuptools.build_meta at install time, a recognised native-build step with no shell scripting around it. View diagnostics → Pass
- 4 of 31 dependencies flagged as unhealthy. View diagnostics → Partial
Provenance & Transparency6
- Repository check failed: no source repository is declared. See how to fix → View diagnostics → Fail
- Provenance check failed: no build-provenance attestation is published. See how to fix → View diagnostics → Fail
- License check failed: no license is declared. See how to fix → Fail
- Actively maintained (last published 113 days ago).Pass
- Disclosure check failed: no security disclosure policy was found in the source repository. See how to fix → Fail
Schema Quality & AI Usability77
- AI-judged instruction clarity (excellent).Pass
- Tool/resource definitions use about 3894 tokens (~50/item across 77 items; 77 tools + 0 resources), lean.Pass
- Usage-examples check failed: none of the tools include examples. See how to fix → Fail
Stability & Change Management80
- Stability observed for 24 of 30 days with no destabilising changes; credit accrues until the full window elapses.Partial
Tool Coverage98
- 97% of tools have a non-trivial description (not blank, and not just the tool's name).Partial
- 98% of tool parameters carry a description.Partial
- Structured output schemas are declared (45% of tools); any adoption earns full credit.Pass
Tool Safety75
- No prompt-injection markers were found in the server instructions, tool names or descriptions we captured.Pass
- 0 of 4 tool(s) whose name or description implies an irreversible operation declare an MCP destructiveHint annotation; "purge" implies "purge" and declares no destructiveHint at all, which the MCP spec reads as destructive by default. See how to fix → Fail
- An AI judge read all 78 captured unit(s) of tool text and found none that tries to manipulate the model reading it.Pass
Capabilities100
- Implements a supported MCP spec version (2025-11-25); the latest is 2026-07-28.Pass
How do I install the UIAutomator2 MCP Server server?
UIAutomator2 MCP Server runs locally as a PyPI package, launched with uvx uiautomator2-mcp-server. Ready-made configuration for Claude, Cursor, VS Code, Codex and 5 more is on this page, copied from each client's own documentation.
pypi · uiautomator2-mcp-server
claude mcp add tanbro-uiautomator2-mcp-server -- uvx uiautomator2-mcp-server
{
"mcpServers": {
"tanbro-uiautomator2-mcp-server": {
"command": "uvx",
"args": [
"uiautomator2-mcp-server"
]
}
}
} {
"servers": {
"tanbro-uiautomator2-mcp-server": {
"command": "uvx",
"args": [
"uiautomator2-mcp-server"
]
}
}
} codex mcp add tanbro-uiautomator2-mcp-server -- uvx uiautomator2-mcp-server
{
"$schema": "https://opencode.ai/config.json",
"mcp": {
"tanbro-uiautomator2-mcp-server": {
"type": "local",
"command": [
"uvx",
"uiautomator2-mcp-server"
],
"enabled": true
}
}
} openclaw mcp add tanbro-uiautomator2-mcp-server --command uvx --arg uiautomator2-mcp-server
mcp_servers:
tanbro-uiautomator2-mcp-server:
command: "uvx"
args: ["uiautomator2-mcp-server"] {
"McpServers": {
"tanbro-uiautomator2-mcp-server": {
"Transport": "stdio",
"Command": "uvx",
"Arguments": [
"uiautomator2-mcp-server"
]
}
}
} assistant mcp add tanbro-uiautomator2-mcp-server -t stdio -c uvx -a uiautomator2-mcp-server
{
"mcpServers": {
"tanbro-uiautomator2-mcp-server": {
"command": "uvx",
"args": [
"uiautomator2-mcp-server"
]
}
}
} Every change we have recorded for this component, newest first. Security-relevant changes are always shown. ▲ marks a change for the better, ▼ a change for the worse; unmarked changes are neutral.
- 20 Sept 26 −3
- Stability: pass → 0.80 functional
- 19 Sept 26 0
- Stability: 0.97 → pass security
- 18 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 93 to 97. That category is still filling its 30-day observation window: 28 days of observed history at the previous scan, 29 at this one. The score rises as the window fills, whether or not the server changes.
- 17 Sept 26 −15
- Malware scan: pass → unverified ▼ security
- 16 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 87 to 90. That category is still filling its 30-day observation window: 26 days of observed history at the previous scan, 27 at this one. The score rises as the window fills, whether or not the server changes.
- 14 Sept 26 +1
No change was recorded against any check on this day. Stability & Change Management went from 80 to 83. That category is still filling its 30-day observation window: 24 days of observed history at the previous scan, 25 at this one. The score rises as the window fills, whether or not the server changes.
- 13 Sept 26 −3
- Stability: pass → 0.80 functional
- 12 Sept 26 +15
- Malware scan: unverified → pass ▲ security
- Stability: 0.97 → pass security
Diagnostic detail from the automated scan of this channel: what the scanner observed at each step, so you can see exactly where a check passed or failed. It is informational only and never changes the trust score.
Captured 20 Sept 2026 · Analysed pypi/uiautomator2-mcp-server@0.3.3
Provenance No attestation
The registry publishes no build provenance for this version, so there is nothing to verify.
| Result | No attestation |
|---|---|
| Ecosystem | pypi |
Background: How many MCP packages publish verified provenance →
Install scripts 1 script
| Hook | Tier | Command |
|---|---|---|
| build_backend | allowlisted | setuptools.build_meta |
Background: Why install scripts are a supply-chain risk →
Dependencies 31 packages
| Packages resolved | 31 |
|---|---|
| Stale | 3 |
| No linked repository | 1 |
| Tree resolution | Complete |
Background: SBOMs and build attestations, explained →
The tools this component advertises to a client, with an estimated token cost for each. Expand a tool to see its parameters and schema. The per-tool counts are indicative and are not scored directly; the schema's total context footprint is one signal in Schema Quality & AI Usability. A tool's description is untrusted text the model reads on every call, which is what makes this list a security surface and not just an inventory: how tool poisoning works →
stop_scrcpy ~78
Stop a running scrcpy process by pid. scrcpy is an application mirrors Android devices (video and audio) connected via USB or TCP/IP and allows control using the computer's keyboard and mouse.
| Name | Type | Req | Description |
|---|---|---|---|
| pid | integer | yes | Process id of the scrcpy process to stop |
| timeout | number | – | Seconds to wait for process to terminate. |
No output schema declared.
No examples provided.
swipe ~91
Swipe from one point to another
| Name | Type | Req | Description |
|---|---|---|---|
| duration | number | – | duration. Default is 0.0. |
| fx | integer | yes | From position X coordinate |
| fy | integer | yes | From position Y coordinate |
| serial | string | yes | Android device serialno |
| step | integer | – | – |
| tx | integer | yes | To position X coordinate |
| ty | integer | yes | To position Y coordinate |
No output schema declared.
No examples provided.
swipe_down ~48
Swipe from top edge to bottom.
| Name | Type | Req | Description |
|---|---|---|---|
| scale | number | yes | Percentage of swipe distance from edge, range (0, 1.0). |
| serial | string | yes | Android device serial number. |
No output schema declared.
No examples provided.
swipe_ext ~65
Swipe from screen edge.
| Name | Type | Req | Description |
|---|---|---|---|
| direction | string | yes | Swipe direction, one of left, right, up, down. |
| scale | number | yes | Percentage of swipe distance from edge, range (0, 1.0). |
| serial | string | yes | Android device serial number. |
No output schema declared.
No examples provided.
swipe_left ~48
Swipe from right edge to left.
| Name | Type | Req | Description |
|---|---|---|---|
| scale | number | yes | Percentage of swipe distance from edge, range (0, 1.0). |
| serial | string | yes | Android device serial number. |
No output schema declared.
No examples provided.
swipe_points ~61
Swipe through multiple points
| Name | Type | Req | Description |
|---|---|---|---|
| duration | number | – | Duration of swipe in seconds, default is 0.5 |
| points | array | yes | List of (x, y) coordinates to swipe through |
| serial | string | yes | Android device serialno |
No output schema declared.
No examples provided.
swipe_right ~48
Swipe from left edge to right.
| Name | Type | Req | Description |
|---|---|---|---|
| scale | number | yes | Percentage of swipe distance from edge, range (0, 1.0). |
| serial | string | yes | Android device serial number. |
No output schema declared.
No examples provided.
swipe_up ~48
Swipe from bottom edge to top.
| Name | Type | Req | Description |
|---|---|---|---|
| scale | number | yes | Percentage of swipe distance from edge, range (0, 1.0). |
| serial | string | yes | Android device serial number. |
No output schema declared.
No examples provided.
unlock ~52
Unlock the device screen. Simulates swipe up from the bottom. For devices with secure lock like PIN, pattern, or password, this only brings up the lock screen.
| Name | Type | Req | Description |
|---|---|---|---|
| serial | string | yes | Android device serial number. |
No output schema declared.
No examples provided.
window_size ~27
Get window size of an Android device
| Name | Type | Req | Description |
|---|---|---|---|
| serial | string | yes | Android device serialno |
Structured output declared, but exposes no named fields.
No examples provided.
write_clipboard ~38
Write clipboard to device
| Name | Type | Req | Description |
|---|---|---|---|
| serial | string | yes | Android device serialno |
| text | string | yes | The actual text in the clip. |
No output schema declared.
No examples provided.
xpath_click ~49
Find element by XPath and perform click.
| Name | Type | Req | Description |
|---|---|---|---|
| serial | string | yes | Android device serial number. |
| timeout | number | yes | Maximum wait time in seconds. |
| xpath | string | yes | Element XPath expression. |
| Name | Type | Req | Description |
|---|---|---|---|
| result | boolean | yes | – |
No examples provided.
xpath_click_nowait ~41
Find element by XPath and click immediately without waiting.
| Name | Type | Req | Description |
|---|---|---|---|
| serial | string | yes | Android device serial number. |
| xpath | string | yes | Element XPath expression. |
No output schema declared.
No examples provided.
xpath_exists ~38
Check if element exists by XPath without waiting.
| Name | Type | Req | Description |
|---|---|---|---|
| serial | string | yes | Android device serial number. |
| xpath | string | yes | Element XPath expression. |
| Name | Type | Req | Description |
|---|---|---|---|
| result | boolean | yes | – |
No examples provided.
xpath_get_attrib ~53
Find element by XPath and get a specific attribute value.
| Name | Type | Req | Description |
|---|---|---|---|
| key | string | yes | Attribute name to retrieve. |
| serial | string | yes | Android device serial number. |
| xpath | string | yes | Element XPath expression. |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
xpath_get_bounds ~40
Find element by XPath and get its bounding box.
| Name | Type | Req | Description |
|---|---|---|---|
| serial | string | yes | Android device serial number. |
| xpath | string | yes | Element XPath expression. |
| Name | Type | Req | Description |
|---|---|---|---|
| result | array | yes | – |
No examples provided.
xpath_get_info ~40
Find element by XPath and get its complete information.
| Name | Type | Req | Description |
|---|---|---|---|
| serial | string | yes | Android device serial number. |
| xpath | string | yes | Element XPath expression. |
Structured output declared, but exposes no named fields.
No examples provided.
xpath_get_text ~40
Find element by XPath and get its text content.
| Name | Type | Req | Description |
|---|---|---|---|
| serial | string | yes | Android device serial number. |
| xpath | string | yes | Element XPath expression. |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
xpath_long_press ~39
Find element by XPath and perform long press.
| Name | Type | Req | Description |
|---|---|---|---|
| serial | string | yes | Android device serial number. |
| xpath | string | yes | Element XPath expression. |
No output schema declared.
No examples provided.
xpath_save_screenshot ~59
Find element by XPath and save screenshot to file.
| Name | Type | Req | Description |
|---|---|---|---|
| file | string | yes | File path to save the screenshot. Format determined by extension. |
| serial | string | yes | Android device serial number. |
| xpath | string | yes | Element XPath expression. |
| Name | Type | Req | Description |
|---|---|---|---|
| result | string | yes | – |
No examples provided.
xpath_screenshot ~51
Find element by XPath and take screenshot.
| Name | Type | Req | Description |
|---|---|---|---|
| format | string | yes | Image format, jpeg or png. |
| serial | string | yes | Android device serial number. |
| xpath | string | yes | Element XPath expression. |
| Name | Type | Req | Description |
|---|---|---|---|
| result | array | yes | – |
No examples provided.
xpath_scroll ~53
Find element by XPath and scroll within it.
| Name | Type | Req | Description |
|---|---|---|---|
| direction | string | yes | Scroll direction, one of forward or backward. |
| serial | string | yes | Android device serial number. |
| xpath | string | yes | Element XPath expression. |
| Name | Type | Req | Description |
|---|---|---|---|
| result | boolean | yes | – |
No examples provided.
xpath_scroll_to ~72
Scroll the entire screen to find an element by XPath.
| Name | Type | Req | Description |
|---|---|---|---|
| direction | string | yes | Scroll direction, one of forward or backward. |
| max_swipes | integer | yes | Maximum swipe attempts. |
| serial | string | yes | Android device serial number. |
| xpath | string | yes | Target element XPath expression to scroll to. |
| Name | Type | Req | Description |
|---|---|---|---|
| result | boolean | yes | – |
No examples provided.
xpath_set_text ~51
Find element by XPath and set its text content.
| Name | Type | Req | Description |
|---|---|---|---|
| serial | string | yes | Android device serial number. |
| text | string | yes | Text content to set. |
| xpath | string | yes | Element XPath expression. |
No output schema declared.
No examples provided.
xpath_swipe ~78
Find element by XPath and swipe within it.
| Name | Type | Req | Description |
|---|---|---|---|
| direction | string | yes | Swipe direction, one of left, right, up, down. |
| scale | number | – | Percentage of swipe distance, range (0, 1.0). |
| serial | string | yes | Android device serial number. |
| xpath | string | yes | Element XPath expression. |
No output schema declared.
No examples provided.
xpath_wait_appear ~51
Wait until element is found using XPath.
| Name | Type | Req | Description |
|---|---|---|---|
| serial | string | yes | Android device serial number. |
| timeout | number | yes | Maximum wait time in seconds. |
| xpath | string | yes | Element XPath expression. |
| Name | Type | Req | Description |
|---|---|---|---|
| result | boolean | yes | – |
No examples provided.
xpath_wait_gone ~50
Wait until element disappears using XPath.
| Name | Type | Req | Description |
|---|---|---|---|
| serial | string | yes | Android device serial number. |
| timeout | number | yes | Maximum wait time in seconds. |
| xpath | string | yes | Element XPath expression. |
| Name | Type | Req | Description |
|---|---|---|---|
| result | boolean | yes | – |
No examples provided.
What is the UIAutomator2 MCP Server server?
UIAutomator2 MCP Server is listed in the public MCP registry as io.github.tanbro/uiautomator2-mcp-server. Android mobile automation with uiautomator2. AI bot for taps, swipes, apps, XPath testing, RPA. This page covers its PyPI package (uiautomator2-mcp-server).
Is the UIAutomator2 MCP Server server safe to use?
UIAutomator2 MCP Server scores 57 out of 100 on VerifyMCP. We found no known CVEs affecting it as of 20 September 2026. That is a record of what we were able to check automatically, not an endorsement. The category breakdown on this page shows every signal behind the number, including the ones we could not confirm.
What tools does the UIAutomator2 MCP Server server expose?
UIAutomator2 MCP Server exposes 77 tools: init, purge, shell_command, device_list, connect, and 72 more. Their descriptions and schemas cost roughly 3,851 tokens of context every time the server is loaded.
Is the UIAutomator2 MCP Server server still maintained?
UIAutomator2 MCP Server is still listed as active in the MCP registry. We last reached this channel on 20 September 2026. Those dates come from our own scans of the registry and the channel itself, not from anything the publisher announced.