Back to Browse

Novada MCP Server

Developer ToolsUse Caution4.2MCP RegistryLocalRemote
Free

Server data from the Official MCP Registry

Search, extract, crawl, map, research, scrape 16 platforms, browser automation, proxy — one API key.

About

Search, extract, crawl, map, research, scrape 16 platforms, browser automation, proxy — one API key.

Remote endpoints: streamable-http: https://mcp.novada.com/mcp

Security Report

4.2
Use Caution4.2High Risk

Novada MCP is a feature-rich web scraping and data extraction server with proper authentication via API keys and reasonable permission scoping for its stated purpose. However, the server has broad network access (HTTP/browser automation across arbitrary URLs), relies on hosted infrastructure for certain operations, and includes some areas where error handling and input validation could be strengthened. The codebase demonstrates good security awareness (write-gated confirmations, auth disclosure in docs) but the scope and criticality of operations warrant closer scrutiny of network isolation and credential handling in production deployments. Supply chain analysis found 7 known vulnerabilities in dependencies (1 critical, 0 high severity). Package verification found 1 issue.

4 files analyzed · 16 issues found

Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.

Permissions Required

This plugin requests these system permissions. Most are normal for its category.

HTTP Network Access

Connects to external APIs or services over the internet.

network_https

Check that this permission is expected for this type of plugin.

browser_automation

Check that this permission is expected for this type of plugin.

File System Read

Reads files on your machine. Normal for tools that analyze or process local data.

env_vars

Check that this permission is expected for this type of plugin.

system_info

Check that this permission is expected for this type of plugin.

What You'll Need

Set these up before or after installing:

Your Novada API key from https://www.novada.comRequired

Environment variable: NOVADA_API_KEY

How to Install & Connect

Available as Local & Remote

This plugin can run on your machine or connect to a hosted endpoint. during install.

Documentation

View on GitHub

From the project's GitHub README.

Novada MCP

One MCP server for the entire live web. Search, extract, scrape, crawl, proxy, browser automation, and AI-powered research — behind a single hosted connection, or one local install if you'd rather run it yourself.

npm version npm downloads CI License: MIT

Quickstart · Get your key · How to choose a tool · Why Novada · Repository layout · Links

Free to start — $10 in free credits, up to 1,000 API calls/month, no credit card needed

✅ Works with any MCP client — Claude, Cursor, Windsurf, VS Code, or npx locally🎯 15 typed per-platform scrapers — Amazon, Google, LinkedIn, TikTok, … each a closed operation enum, so an agent can't call an invalid op
🎁 $10 free credits — no credit card needed — up to 1,000 calls/month⚡ Hosted-first, zero install — point at one URL, or self-host in one command

Quickstart

Novada is hosted-first — there's nothing to install. Point your client at the hosted URL and you're done.

Security note: the hosted URL contains your API key in the ?apikey= parameter — treat it like a password. Never share it, never post it publicly, and never configure it as a shared or organization-level connector. Header-capable clients: prefer Authorization: Bearer <key> instead — it keeps the key out of URLs and access logs.

claude.ai (web)

  1. Go to Settings → Connectors → Add custom connector.
  2. Name it Novada.
  3. Paste the URL (contains your key — see security note above):
    https://mcp.novada.com/mcp?apikey=YOUR_KEY
    
  4. Click Add.

Claude Code

claude mcp add --transport http novada "https://mcp.novada.com/mcp?apikey=YOUR_KEY"

Full per-client install (Cursor/Windsurf/VS Code + local self-host) → npm-package/README.md.

Try it

novada_setup()                                          — validates your key, shows balance
novada_search({query: "Claude MCP tutorials"})          — web search
novada_extract({url: "https://example.com"})            — read any URL
novada_research({question: "how do MCP servers work?"}) — parallel multi-source research

Get your key

  1. Sign up at novada.com — no credit card required.
  2. Copy your API key from novada.com.
  3. You start with $10 in free credits, capped at 1,000 calls/month. Check what's left any time with novada_account({section: "balance"}) or novada_setup().

How to choose a tool

How to choose a Novada MCP tool — decision guide

These are the tools you reach for most:

ToolUse it when
novada_setupFirst run — validate your key and see your balance. Start here.
novada_searchFind pages by query (google / duckduckgo / yandex; time, domain, geo filters).
novada_extractRead one known URL — or up to 10 in parallel — through anti-bot pages.
novada_researchAnswer a complex question — parallel multi-source search + extraction in one call.
novada_scrapeStructured records from 16 platforms (Amazon, LinkedIn, TikTok, …). Plus 15 typed per-platform tools — novada_scrape_amazon, _google, _linkedin, … — each a closed operation enum.
novada_crawlPull content from a bounded set of related pages (≤20) on one site.
novada_mapDiscover what URLs exist on a site before fetching.
novada_browserInteract with a page — click, type, screenshot, run JS.
novada_proxyRoute your own HTTP client through a specific IP type / country / session.

Not sure? Call novada_discover and it returns the full catalog with each tool's status.

📚 Full reference — all 38 tools →

38 tools across 6 categories. Self-host (npx novada-mcp) exposes all 38. The hosted default surface (mcp.novada.com) exposes 30 — the same registry minus 8 tools that don't apply to a stateless serverless endpoint: novada_browser_flow (needs a persistent browser session), novada_site_copy (writes files to disk), novada_ip_whitelist / novada_static_ip_mgmt / novada_capture_apikey (write-gated account ops), novada_session_stats / novada_search_feedback (per-process in-memory state), and novada_verify — it is core-derived, not a hand-curated subset. Call novada_discover on your connection to see exactly what's available on it.

Where does it run?

ToolLocal (npx novada-mcp)Hosted (mcp.novada.com)
novada_search✅✅
novada_extract✅✅
novada_crawl✅✅
novada_research✅✅
novada_map✅✅
novada_site_copy✅❌ writes to local disk
novada_search_feedback✅❌ per-process in-memory state
novada_scrape✅✅
novada_scrape_amazon … _perplexity (15 platform tools)✅✅
novada_ai_monitor✅✅
novada_monitor✅✅
novada_verify✅❌ not on novada_discover's hosted listing
novada_proxy✅✅
novada_browser✅✅
novada_browser_flow✅❌ needs a persistent browser session
novada_account✅✅
novada_proxy_account_create✅❌ write-gated account op
novada_proxy_account_list✅✅
novada_ip_whitelist✅❌ write-gated account op
novada_capture_apikey✅❌ write-gated account op
novada_static_ip_mgmt✅❌ write-gated account op
novada_discover✅✅
novada_setup✅✅
novada_session_stats✅❌ per-process in-memory state

Full per-tool reference (same column) → docs/TOOLS.md.


Why Novada

  • 15 dedicated per-platform scrapers. novada_scrape_amazon, _google, _bing, _duckduckgo, _yandex, _youtube, _instagram, _facebook, _tiktok, _x, _walmart, _shein, _linkedin, _github, _perplexity — each exposes a closed, typed operation enum scoped to that platform instead of the generic novada_scrape's open platform+operation string pair, so an agent can't guess an invalid operation for the wrong platform.
  • Honest tool surface. Every listed operation is verified-working — operations we can't currently deliver are marked and excluded, not left in to fail on you mid-task.
  • Contract-tested self-report. Tool descriptions are tested against actual behavior, not just written and forgotten — what a tool claims to return is checked against what it actually returns.
  • Drift-guarded tool registry. npm-package/src/tools/registry.ts is the single source of truth for the tool catalog; a test asserts the registered tools, the wired tools, and the novada_discover output can never diverge.
  • confirm:true write-gate. Every mutating tool (proxy sub-account creation, IP whitelist changes, static IP purchases, capture-key resets) requires an explicit two-step confirmation — no silent writes.
  • Callable onboarding. novada_discover and novada_setup are tools your agent can call itself to find the right tool or validate a key, without ever reading this README.

vs Firecrawl / Tavily (measured, not marketing):

  • 4.9× more compact. An identical 5-result search query returned 2,761 bytes from Novada vs 13,421 bytes from Firecrawl — less agent token cost per answer.
  • Keyless to start. npx -y novada-mcp cold-starts with no key; novada_setup walks you to one only when a tool needs it.
  • Named anti-bot failures. On an unresolvable target, Novada's response names the exact blocker (e.g. anti_bot:kasada) instead of a generic error, so an agent can branch on it.

Repository layout

This is a monorepo with two artifacts:

  • npm-package/ — the novada-mcp npm package. Local stdio MCP server (npx novada-mcp); source of truth for all tool logic.
  • hosted-server/ — what runs at https://mcp.novada.com. An HTTP wrapper (auth, quota, rate-limit) on Vercel around the npm package's built output.

Full architecture map (entrances, dispatch core, where-does-X-live) → ARCHITECTURE.md; contributor routing → CONTRIBUTING.


Links

License

MIT

Reviews

No reviews yet

Be the first to review this server!