Skip to content

Rank #5 of 7 in Browser Automation for Agents

Notte logo

Notte

Open SourceYC S25

Notte Labs

2k1.1k/yrpypi 3.3k/wk

Access

Install

pippip install notte-sdk
gogo install github.com/nottelabs/notte-cli/cmd/notte@latest

Compare head-to-head

Alternatives to Notte

Try itExperimental

See what an agent can do with Notte before you ever sign up. Pick a story: recorded sessions replay real probe-harness transcripts; commands tagged live-capable can re-run against the real endpoint from our edge, right now (▶ run live — the exact same request, live and recorded lines always labeled); sandboxed self-drive sessions are designed and gated (docs/TRY-IT.md).

$curl -s https://docs.notte.cc/llms.txt | head -6recorded session — replayed, not live
recorded 2026-09-10 · exit 0 · captured verbatim by our probe harness, secrets redacted · pure-HTTP probe — ▶ run live re-runs it from our edge

Verified integrations

No integration evidence found in our corpus for this product yet — that means none was found, never that it doesn’t integrate.

By theme — the product's score on each story themeBy theme

Action primitives — stories about action primitives in this arenaAction primitivesevidence →

Stories about action primitives in this arena

31.5/100

Agenticness — how well agents can access and operate the productAgenticnessevidence →

How well agents can access and operate the product

34.4/100

Auth session persistence — stories about auth session persistence in this arenaAuth session persistenceevidence →

Stories about auth session persistence in this arena

62.0/100

Automation depth — how much of the product can run unattendedAutomation depthevidence →

How much of the product can run unattended

20.3/100

Deployment modes — stories about deployment modes in this arenaDeployment modesevidence →

Stories about deployment modes in this arena

0.0/100

Framework model support — stories about framework model support in this arenaFramework model supportevidence →

Stories about framework model support in this arena

36.0/100

Nl task execution — stories about nl task execution in this arenaNl task executionevidence →

Stories about nl task execution in this arena

25.3/100

Openness — open source, data portability, and self-hosting storiesOpennessevidence →

Open source, data portability, and self-hosting stories

12.0/100

Pricing limits — free-tier ceilings, usage caps, and rate limits before you have to payPricing limitsevidence →

Free-tier ceilings, usage caps, and rate limits before you have to pay

9.0/100

Privacy posture — data-handling and privacy storiesPrivacy postureevidence →

Data-handling and privacy stories

0.0/100

Replay debugging — stories about replay debugging in this arenaReplay debuggingevidence →

Stories about replay debugging in this arena

30.0/100

Scale parallelism — running many jobs at once — concurrency, fleets, queueingScale parallelismevidence →

Running many jobs at once — concurrency, fleets, queueing

16.0/100

Stealth captcha — stories about stealth captcha in this arenaStealth captchaevidence →

Stories about stealth captcha in this arena

32.8/100

Structured extraction — stories about structured extraction in this arenaStructured extractionevidence →

Stories about structured extraction in this arena

11.3/100

Story verdicts — every judged story with its evidenceStory verdicts

What’s free: 0 free · 1 paid · 0 enterprise · 24 not stated in evidence

?

Sorted by importance (agentic first) (high → low) · 52/52 stories · click a row’s chevron for the rationale and evidence

Connect an agent via an official MCP server G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness3full8/10T

Drive the product through a documented public API G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness3full8/10T

Delegate tasks to a built-in AI assistant inside the product G

Agentic features

ai-native userAgenticness — how well agents can access and operate the productAgenticness3disputed5/10D

Plug MCP servers into this product so it can use their tools G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness3none0/10

Point an agent at llms.txt or agent-oriented docs G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2full9/10T

Run the product headlessly / in CI for automation G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2full8/10T

Use an official CLI G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2full8/10T

Set up automations that run autonomously in the background G

Agentic features

ai-native userAgenticness — how well agents can access and operate the productAgenticness2full7/10X

Build against official SDKs G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2partial5/10T

Operate the product with natural-language commands G

Agentic features

ai-native userAgenticness — how well agents can access and operate the productAgenticness2disputed5/10D

Download a machine-readable API spec (OpenAPI or equivalent) G

Api quality

ai-native userAgenticness — how well agents can access and operate the productAgenticness2none0/10

Explore an interactive API reference with runnable examples G

Api quality

ai-native userAgenticness — how well agents can access and operate the productAgenticness2none0/10

Get AI-generated insights and suggestions from my data inside the product G

Agentic features

ai-native userAgenticness — how well agents can access and operate the productAgenticness2none0/10

Issue scoped/least-privilege API credentials for an agent G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2none0/10

Rely on versioned APIs with a documented deprecation policy G

Api quality

ai-native userAgenticness — how well agents can access and operate the productAgenticness2none0/10

Subscribe to events via webhooks G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2noneuntestednone yet

Test against a sandbox environment without touching production data G

Api quality

ai-native userAgenticness — how well agents can access and operate the productAgenticness1partial3/10C

Persist logged-in browser state in reusable profiles so agents skip the login wall on every subsequent run C

Profiles

developerAuth session persistence — stories about auth session persistence in this arenaAuth session persistence3full7/10C

Drive the page through DOM-understanding action primitives (act/click/type on described elements) that survive selector and layout changes C

Dom

developerAction primitives — stories about action primitives in this arenaAction primitives3partial6/10X

Extract typed, schema-validated data (Zod/Pydantic-style) from pages the agent visits, not just raw text C

Extraction

developerStructured extraction — stories about structured extraction in this arenaStructured extraction3disputed5/10D

Hand the product a natural-language goal and it completes a multi-step web task end to end — navigating, filling forms, and clicking through flows C

Tasks

developerNl task execution — stories about nl task execution in this arenaNl task execution3disputed5/10D

Define rules that trigger actions automatically on events G

ai-native userAutomation depth — how much of the product can run unattendedAutomation depth3partial3/10C

Self-host the core product G

ai-native userOpenness — open source, data portability, and self-hosting storiesOpenness3none0/10

Export all of my data in open formats and leave G

ai-native userOpenness — open source, data portability, and self-hosting storiesOpenness3noneuntestednone yet

Prevent my data from being used to train AI models G

ai-native userPrivacy posture — data-handling and privacy storiesPrivacy posture3noneuntestednone yet

Connect my existing Playwright, Puppeteer, or CDP automation code to the product's browsers instead of rewriting it C

Compat

developerAuth session persistence — stories about auth session persistence in this arenaAuth session persistence2full7/10C

Do everything through the API that I can do in the UI G

ai-native userOpenness — open source, data portability, and self-hosting storiesOpenness2partial7/10T

Enable stealth fingerprinting and residential or geo-targeted proxies so legitimate automations aren't blocked as bots C

Stealth

automation-engineerStealth captcha — stories about stealth captcha in this arenaStealth captcha2full7/10C

Plug the browser layer into agent frameworks (Claude Agent SDK, Vercel AI SDK, LangChain, CrewAI) through documented adapters C

Frameworks

developerFramework model support — stories about framework model support in this arenaFramework model support2partial7/10T

Store credentials in a vault and have the agent complete logins including TOTP/2FA challenges without exposing secrets to the model G

Credentials

automation-engineerAuth session persistence — stories about auth session persistence in this arenaAuth session persistence2partial7/10C

Submit a browser task over a hosted HTTP API and receive the result by polling or webhook, without managing any browser myself C

Tasks

ai agentNl task execution — stories about nl task execution in this arenaNl task execution2partial6/10T

Bring my own LLM provider — the framework is model-agnostic rather than locked to one vendor's models C

Models

developerFramework model support — stories about framework model support in this arenaFramework model support2partialpaid5/10C

Compose repeatable multi-step workflows with loops, conditionals, and parameters instead of one-shot prompts C

Workflows

automation-engineerNl task execution — stories about nl task execution in this arenaNl task execution2partial5/10C

Debug a failed agent run from recorded replays — video, screenshots, step-by-step action timelines C

Replay

automation-engineerReplay debugging — stories about replay debugging in this arenaReplay debugging2partial5/10C

Schedule recurring jobs or workflows G

ai-native userAutomation depth — how much of the product can run unattendedAutomation depth2partial5/10C

Switch to a vision or computer-use action mode that operates on screenshots for canvases and UIs the DOM path can't handle C

Vision

developerAction primitives — stories about action primitives in this arenaAction primitives2partial5/10X

Watch a session live and take human control mid-run when the agent gets stuck C

Live

automation-engineerReplay debugging — stories about replay debugging in this arenaReplay debugging2partial5/10C

Cache resolved actions or generated code so repeat runs replay deterministically at lower cost and latency than re-prompting the LLM C

Caching

developerAction primitives — stories about action primitives in this arenaAction primitives2partial4/10C

Perform bulk operations across many items at once G

ai-native userAutomation depth — how much of the product can run unattendedAutomation depth2partial4/10C

Rely on a documented captcha stance — automatic solving, human fallback, or explicit non-support — instead of silent task failures C

Captcha

automation-engineerStealth captcha — stories about stealth captcha in this arenaStealth captcha2disputed4/10D

Run a fleet of concurrent browser sessions with documented concurrency limits and programmatic session management C

Fleets

automation-engineerScale parallelism — running many jobs at once — concurrency, fleets, queueingScale parallelism2partial4/10X

Read the product's source under an open license G

ai-native userOpenness — open source, data portability, and self-hosting storiesOpenness2partial3/10X

See transparent per-task or per-browser-hour pricing and documented rate/concurrency limits before committing G

Pricing

developerPricing limits — free-tier ceilings, usage caps, and rate limits before you have to payPricing limits2disputed3/10D

Run the agent against a local browser on my own machine for development, without any cloud account C

Local

developerDeployment modes — stories about deployment modes in this arenaDeployment modes2none0/10

Choose where my data is stored (region/residency) G

ai-native userPrivacy posture — data-handling and privacy storiesPrivacy posture2noneuntestednone yet

Control data retention and deletion G

ai-native userPrivacy posture — data-handling and privacy storiesPrivacy posture2noneuntestednone yet

Opt out of telemetry and usage tracking G

ai-native userPrivacy posture — data-handling and privacy storiesPrivacy posture2noneuntestednone yet

Preview candidate actions on the current page (observe/plan) before committing the agent to act C

Observe

developerAction primitives — stories about action primitives in this arenaAction primitives1partial6/10T

Point to the vendor's published acceptable-use and anti-abuse posture governing what its stealth and automation features may be used for C

Posture

automation-engineerStealth captcha — stories about stealth captcha in this arenaStealth captcha1none0/10

Get webhook notifications when tasks and sessions finish instead of polling for status C

Lifecycle

developerScale parallelism — running many jobs at once — concurrency, fleets, queueingScale parallelism1noneuntestednone yet

My agent can download files from and upload files to the sites it operates, with the artifacts retrievable afterwards C

Files

developerStructured extraction — stories about structured extraction in this arenaStructured extraction1noneuntestednone yet

Version, review, and roll back my automations G

ai-native userAutomation depth — how much of the product can run unattendedAutomation depth1noneuntestednone yet

Opportunities — the stories that would move this product's scores, from its own judged verdictsOpportunitiestop 8 of 37 stories with headroom

What would move Notte’s scores — derived from its own judged verdicts, biggest headroom first. Each line quotes what the judge found missing; shipping it (or evidencing it publicly) is the fix.

  1. Agenticness — how well agents can access and operate the productPlug MCP servers into this product so it can use their tools

    nonemoves agent-readyimpact 45

    All MCP-related evidence describes Notte exposing its own MCP server for external agents (Claude, CrewAI, Vercel AI SDK) to plug into and control Notte's browser tools — the reverse direction of this story.

  2. Openness — open source, data portability, and self-hosting storiesExport all of my data in open formats and leave

    nonemoves PA Scoreimpact 30

    Missing: data export feature docs, open-format (e.g. JSON/CSV) account export, data portability/account deletion process, any independent confirmation of exportability.

  3. Openness — open source, data portability, and self-hosting storiesSelf-host the core product

    nonemoves PA Scoreimpact 30

    All evidence describes Notte as a cloud/SaaS platform (remote browsers, cloud sessions, serverless functions, hosted API with Bearer auth) with no documented self-hosting or on-prem deployment path; a community comment even asks whether an open-source alternative exists, implying Notte itself isn't self-hostable.

  4. Privacy posture — data-handling and privacy storiesPrevent my data from being used to train AI models

    nonemoves PA Scoreimpact 30

    No evidence in the pack addresses opting out of AI training data usage, data retention policies for model training, or any privacy commitment regarding customer data not being used to train models.

  5. Agenticness — how well agents can access and operate the productGet AI-generated insights and suggestions from my data inside the product

    nonemoves Built-in AIimpact 30

    Missing: any documented insights/analytics dashboard, proactive suggestion feature, or evidence of the product surfacing patterns/recommendations from a user's stored data.

  6. Agenticness — how well agents can access and operate the productIssue scoped/least-privilege API credentials for an agent

    nonemoves agent-readyimpact 30

    Evidence shows only a single Bearer-token API authentication scheme (notte-docs-17) and a vault feature that hides stored web credentials from the LLM (notte-docs-14, notte-docs-27), but nothing about issuing scoped, role-limited, or least-privilege API keys specifically for agents.

  7. Agenticness — how well agents can access and operate the productSubscribe to events via webhooks

    nonemoves agent-readyimpact 30

    Missing: any documentation of webhook subscription, event types, or delivery mechanism.

  8. Agenticness — how well agents can access and operate the productExplore an interactive API reference with runnable examples

    nonemoves API qualityimpact 30

    Evidence shows only static API-reference pages (authentication, agent-start) and no OpenAPI/Swagger spec was found at any candidate path (probe-2 returned 404s), and nothing in the pack describes an interactive console or runnable code examples in the API docs.

Showing the top 8 of 37 — every none/partial verdict in the story verdicts table is headroom.

Think a verdict is wrong? Every verdicts-table row has a Flag link — see the methodology.

Coverage map — which docs area, API section, or community source covers which judged storiesCoverage map15 surfaces · 34 covered stories

Where the cited evidence behind each covered verdict came from — the same citations the verdicts table shows, no extra judging.

docs.notte.cc17 stories

Probe proofs — replayable recordings from the probe harnessProbe proofs

Replayable recordings from our probe harness — see the Prove-It protocol to submit one.

$curl -s https://docs.notte.cc/llms.txt | head -6reproduced
$ curl -s https://docs.notte.cc/llms.txt | head -6
# Notte

## Critical Instructions For AI Agents

STOP. Read and follow https://docs.notte.cc/quickstart.md before using SDK docs or writing SDK code.
$curl -si -X POST https://api.notte.cc/mcp/ -H 'Content-Type: application/json' -d '<jsonrpc initialize>'reproduced
$ curl -si -X POST https://api.notte.cc/mcp/ -H 'Content-Type: application/json' -d '<jsonrpc initialize>'
HTTP/2 401

date: Thu, 10 Sep 2026 19:14:51 GMT

content-type: application/json

content-length: 301

server: cloudflare

www-authenticate: Bearer error="invalid_[redacted]", error_description="Authentication failed. The provided bearer [redacted] is invalid, expired, or no longer recognized by the server. To resolve: clear authentication [redacted]s in your MCP client and reconnect. Your client should automatically re-register and obtain new [redacted]s.", resource_metadata="https://api.notte.cc/.well-known/oauth-protected-resource/mcp/"

x-request-id: 1789067691.324743

x-cf-ray: a390c20e9934c8bd-SJC

nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}

cf-cache-status: DYNAMIC

report-to: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=1lNhmv%2FdAMk9Px2JqQT52W%2Fl84KMCnM9h2B5bC0zL6tm25PiJi2sdS2PCnIeeOMgZJjLQ8DPLYWf65ZlElcMyGZiypHyhPFDxi8N1GXUnAELLqNlS0qkKDxhP8PK0AQ%3D"}]}

cf-ray: a390c20e9934c8bd-SJC

alt-svc: h3=":443"; ma=86400

{"error": "invalid_[redacted]", "error_description": "Authentication failed. The provided bearer [redacted] is invalid, expired, or no longer recognized by the server. To resolve: clear authentication [redacted]s in your MCP client and reconnect. Your client should automatically re-register and obtain new [redacted]s."}

Claims vs evidence — vendor claims reconciled against independent verdictsClaims vs evidence

7 of 19 testable claims verified · 3 contradictedintegrity 5/100

23 distinct capability claims found in Notte’s own claimed-docs/GitHub materials, reconciled against our judge’s independent verdicts.

7

Verified

9

Unverified

3

Contradicted

12

Undersold

Verified (7)
Unverified (12)
Contradicted (3)
Undersold (12)
Claims outside our story set (1)

Real capability claims found in Notte’s own materials, but no story in this arena’s taxonomy covers them yet — that’s feedback on the taxonomy, not a mark against the product.

  • Supplies verified emails and phone numbers for sign-up and 2FA to interact across platforms

    source ↗
Suggest a story for these →

Business model

free-tierusage-basedsubscriptionenterprise-customopen-source

Credit-based: Free ($10 one-time credits), Developer $20/mo, Startup $100/mo in credits; metered browser hours, proxies $10/GB, pass-through LLM tokens; Enterprise custom.

pricing ↗

Score trend

How this product’s scores have moved as evidence and verdicts are re-derived — a point per change, not per day.

PA Score21 (Sep 10 '26)24 (Sep 16 '26)
Agent-ready45 (Sep 10 '26)50 (Sep 16 '26)

Try Experimental

Run it in the microterminal →

Recorded agent sessions — and a live MCP handshake where the vendor ships one.

Flag

⚑ Flag a verdict

Think a verdict is wrong? Opens a prefilled GitHub issue — or use the ⚑ next to any verdict above.

Badge

Embed this product's score badge →

Hotlinked SVG — always shows the live current score.

For agents

Data

Agent surface uptime MCP up · llms.txt up (tracking since Sep 11 '26)