Skip to content

fix(tools): validate user-provided regex patterns in MCP tools - #40752

Merged
Pavel Feldman (pavelfeldman) merged 4 commits into
microsoft:mainfrom
SebTardif:fix/mcp-regex-validation
May 9, 2026
Merged

fix(tools): validate user-provided regex patterns in MCP tools#40752
Pavel Feldman (pavelfeldman) merged 4 commits into
microsoft:mainfrom
SebTardif:fix/mcp-regex-validation

Conversation

@SebTardif

@SebTardifSebastien Tardif (SebTardif) commented May 9, 2026

Copy link
Copy Markdown
Contributor

Summary

  • MCP tools that accept grep/filter parameters pass them directly to new RegExp() without validation
  • An invalid pattern (e.g., [a-) crashes the tool with an unhandled exception
  • Wrap in try-catch and throw a clear error message that includes the original RegExp error

Affected tools: trace actions grep, trace requests grep, network filter.

Failure scenario: An MCP client sends a grep/filter parameter with invalid regex syntax (e.g., unclosed bracket [a-). The new RegExp() constructor throws a SyntaxError that propagates unhandled, crashing the tool handler instead of returning a user-friendly error.

Origin: The grep/filter parameters were introduced in #39771 (2026-03-20) by Pavel Feldman when trace CLI handlers were extracted into separate files.

MCP tools that accept grep/filter parameters pass them directly to
new RegExp() without validation. An invalid pattern crashes the tool
with an unhandled exception. Wrap in try-catch and throw a clear
error message for invalid patterns.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>
Preserves the RegExp constructor's error message (e.g. 'Invalid
regular expression: /[a-/: Unterminated character class') so users
can understand why their pattern is invalid.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'd move it to where we validate params using zod.

Move regex validation from inline try-catch in handlers to Zod
.refine() on the inputSchema. This validates the pattern during
parameter parsing before the handler runs.
Revert inline validation in trace CLI tools (traceActions,
traceRequests) since those use commander, not Zod.
Also add the same validation to the CLI daemon's network command
schema.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>
@SebTardif

Copy link
Copy Markdown
ContributorAuthor

Moved the validation to Zod .refine() on the filter field in both network.ts and cli-daemon/commands.ts. Invalid regex is now caught during param parsing before the handler runs.

Reverted the inline try-catch in trace CLI tools (traceActions, traceRequests) since those use commander, not Zod.

inputSchema: z.object({
static: z.boolean().default(false).describe('Whether to include successful static resources like images, fonts, scripts, etc. Defaults to false.'),
filter: z.string().optional().describe('Only return requests whose URL matches this regexp (e.g. "/api/.*user").'),
filter: z.string().optional().refine(v => { if (!v) return true; try { new RegExp(v); return true; } catch { return false; } }, { message: 'Invalid regular expression' }).describe('Only return requests whose URL matches this regexp (e.g. "/api/.*user").'),

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'm surprised linter is not yelling at you. Let's kick it into isRegexString next to isRegExp?

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Also, this typically would warrant a test.

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Extracted isRegexString into @isomorphic/rtti next to isRegExp. The Zod schema now uses .refine(v => !v || isRegexString(v)).

Also reverted the cli-daemon and trace CLI changes since validation is handled at the tool schema level.

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Added a test in tests/mcp/network.spec.ts that verifies invalid regex filter ([invalid() returns an error. All 14 network tests pass.

Add isRegexString to @isomorphic/rtti next to isRegExp. Use it in
the network tool's Zod schema to validate regex filter strings.
Revert cli-daemon commands.ts and trace CLI tools to original since
validation is handled at the tool schema level.
Add test that verifies invalid regex filter is rejected.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>
@github-actions

Copy link
Copy Markdown
Contributor

Test results for "MCP"

5 failed
❌ [firefox] › mcp/cli-devtools.spec.ts:217 › video-start-stop @mcp-windows-latest-firefox
❌ [firefox] › mcp/cli-devtools.spec.ts:231 › video-chapter @mcp-windows-latest-firefox
❌ [msedge] › mcp/annotate.spec.ts:330 › should annotate when context has no fixed viewport @mcp-windows-latest-msedge
❌ [msedge] › mcp/annotate.spec.ts:367 › should cancel browser_annotate when the MCP request is aborted @mcp-windows-latest-msedge
❌ [msedge] › mcp/annotate.spec.ts:398 › should cancel browser_annotate when the MCP client disconnects @mcp-windows-latest-msedge

7052 passed, 1068 skipped


Merge workflow run.

@github-actions

Copy link
Copy Markdown
Contributor

Test results for "tests 1"

3 flaky⚠️ [installation tests] › playwright-test-package-managers.spec.ts:19 › npm: @playwright/test should work `@package-installations-windows-latest`
⚠️ [chromium-library] › library/video.spec.ts:719 › screencast › should work with video+trace `@ubuntu-22.04-chromium-tip-of-tree`
⚠️ [firefox-page] › page/page-emulate-media.spec.ts:144 › should keep reduced motion and color emulation after reload `@firefox-ubuntu-22.04-node20`

41703 passed, 850 skipped


Merge workflow run.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@SebTardif@pavelfeldman
, 'i'); if (__m === '*' || __re.test(location.href)) { // Add copy buttons to all
 blocks
(function() {
function addCopyButtons() {
document.querySelectorAll('pre code').forEach(function(codeBlock) {
if (codeBlock.parentElement.hasAttribute('data-copy-added')) return;
codeBlock.parentElement.setAttribute('data-copy-added', 'true');
var btn = document.createElement('button');
btn.textContent = 'Copy';
btn.style.cssText = 'position:absolute;top:4px;right:4px;padding:2px 8px;font-size:11px;background:#4ecdc4;border:none;border-radius:4px;color:#1a1a2e;cursor:pointer;opacity:0.7;transition:opacity 0.2s;';
btn.onmouseover = function() { this.style.opacity = '1'; };
btn.onmouseout = function() { this.style.opacity = '0.7'; };
btn.onclick = function() {
navigator.clipboard.writeText(codeBlock.textContent).then(function() {
btn.textContent = 'Copied!';
setTimeout(function() { btn.textContent = 'Copy'; }, 1500);
});
};
codeBlock.parentElement.style.position = 'relative';
codeBlock.parentElement.appendChild(btn);
});
}
addCopyButtons();
// Re-run on dynamic content
var observer = new MutationObserver(addCopyButtons);
observer.observe(document.body, { childList: true, subtree: true });
})();
}
} catch(__e) { console.warn('[Userscript:Add Copy Buttons to Code Blocks]', __e); }
})();
(function(){
try {
var __m = "github.com";
var __re = new RegExp('^' + "github\\.com" + '
fix(tools): validate user-provided regex patterns in MCP tools by SebTardif · Pull Request #40752 · microsoft/playwright · GitHub
Skip to content

fix(tools): validate user-provided regex patterns in MCP tools - #40752

Merged
Pavel Feldman (pavelfeldman) merged 4 commits into
microsoft:mainfrom
SebTardif:fix/mcp-regex-validation
May 9, 2026
Merged

fix(tools): validate user-provided regex patterns in MCP tools#40752
Pavel Feldman (pavelfeldman) merged 4 commits into
microsoft:mainfrom
SebTardif:fix/mcp-regex-validation

Conversation

@SebTardif

@SebTardifSebastien Tardif (SebTardif) commented May 9, 2026

Copy link
Copy Markdown
Contributor

Summary

  • MCP tools that accept grep/filter parameters pass them directly to new RegExp() without validation
  • An invalid pattern (e.g., [a-) crashes the tool with an unhandled exception
  • Wrap in try-catch and throw a clear error message that includes the original RegExp error

Affected tools: trace actions grep, trace requests grep, network filter.

Failure scenario: An MCP client sends a grep/filter parameter with invalid regex syntax (e.g., unclosed bracket [a-). The new RegExp() constructor throws a SyntaxError that propagates unhandled, crashing the tool handler instead of returning a user-friendly error.

Origin: The grep/filter parameters were introduced in #39771 (2026-03-20) by Pavel Feldman when trace CLI handlers were extracted into separate files.

MCP tools that accept grep/filter parameters pass them directly to
new RegExp() without validation. An invalid pattern crashes the tool
with an unhandled exception. Wrap in try-catch and throw a clear
error message for invalid patterns.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>
Preserves the RegExp constructor's error message (e.g. 'Invalid
regular expression: /[a-/: Unterminated character class') so users
can understand why their pattern is invalid.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'd move it to where we validate params using zod.

Move regex validation from inline try-catch in handlers to Zod
.refine() on the inputSchema. This validates the pattern during
parameter parsing before the handler runs.
Revert inline validation in trace CLI tools (traceActions,
traceRequests) since those use commander, not Zod.
Also add the same validation to the CLI daemon's network command
schema.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>
@SebTardif

Copy link
Copy Markdown
ContributorAuthor

Moved the validation to Zod .refine() on the filter field in both network.ts and cli-daemon/commands.ts. Invalid regex is now caught during param parsing before the handler runs.

Reverted the inline try-catch in trace CLI tools (traceActions, traceRequests) since those use commander, not Zod.

inputSchema: z.object({
static: z.boolean().default(false).describe('Whether to include successful static resources like images, fonts, scripts, etc. Defaults to false.'),
filter: z.string().optional().describe('Only return requests whose URL matches this regexp (e.g. "/api/.*user").'),
filter: z.string().optional().refine(v => { if (!v) return true; try { new RegExp(v); return true; } catch { return false; } }, { message: 'Invalid regular expression' }).describe('Only return requests whose URL matches this regexp (e.g. "/api/.*user").'),

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'm surprised linter is not yelling at you. Let's kick it into isRegexString next to isRegExp?

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Also, this typically would warrant a test.

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Extracted isRegexString into @isomorphic/rtti next to isRegExp. The Zod schema now uses .refine(v => !v || isRegexString(v)).

Also reverted the cli-daemon and trace CLI changes since validation is handled at the tool schema level.

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Added a test in tests/mcp/network.spec.ts that verifies invalid regex filter ([invalid() returns an error. All 14 network tests pass.

Add isRegexString to @isomorphic/rtti next to isRegExp. Use it in
the network tool's Zod schema to validate regex filter strings.
Revert cli-daemon commands.ts and trace CLI tools to original since
validation is handled at the tool schema level.
Add test that verifies invalid regex filter is rejected.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>
@github-actions

Copy link
Copy Markdown
Contributor

Test results for "MCP"

5 failed
❌ [firefox] › mcp/cli-devtools.spec.ts:217 › video-start-stop @mcp-windows-latest-firefox
❌ [firefox] › mcp/cli-devtools.spec.ts:231 › video-chapter @mcp-windows-latest-firefox
❌ [msedge] › mcp/annotate.spec.ts:330 › should annotate when context has no fixed viewport @mcp-windows-latest-msedge
❌ [msedge] › mcp/annotate.spec.ts:367 › should cancel browser_annotate when the MCP request is aborted @mcp-windows-latest-msedge
❌ [msedge] › mcp/annotate.spec.ts:398 › should cancel browser_annotate when the MCP client disconnects @mcp-windows-latest-msedge

7052 passed, 1068 skipped


Merge workflow run.

@github-actions

Copy link
Copy Markdown
Contributor

Test results for "tests 1"

3 flaky⚠️ [installation tests] › playwright-test-package-managers.spec.ts:19 › npm: @playwright/test should work `@package-installations-windows-latest`
⚠️ [chromium-library] › library/video.spec.ts:719 › screencast › should work with video+trace `@ubuntu-22.04-chromium-tip-of-tree`
⚠️ [firefox-page] › page/page-emulate-media.spec.ts:144 › should keep reduced motion and color emulation after reload `@firefox-ubuntu-22.04-node20`

41703 passed, 850 skipped


Merge workflow run.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@SebTardif@pavelfeldman
, 'i'); if (__m === '*' || __re.test(location.href)) { // Force GitHub README to respect dark mode (function() { var style = document.createElement('style'); style.textContent = ' .markdown-body { color-scheme: dark light; } .markdown-body pre { background: #161b22 !important; } .markdown-body code { background: rgba(110, 118, 129, 0.4) !important; } .markdown-body table th, .markdown-body table td { border-color: #30363d !important; } .markdown-body img { background: #0d1117; } .markdown-body blockquote { border-left-color: #8b949e; } .markdown-body hr { border-color: #30363d; } '; document.head.appendChild(style); })(); } } catch(__e) { console.warn('[Userscript:GitHub Dark Mode README Fix]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' fix(tools): validate user-provided regex patterns in MCP tools by SebTardif · Pull Request #40752 · microsoft/playwright · GitHub
Skip to content

fix(tools): validate user-provided regex patterns in MCP tools - #40752

Merged
Pavel Feldman (pavelfeldman) merged 4 commits into
microsoft:mainfrom
SebTardif:fix/mcp-regex-validation
May 9, 2026
Merged

fix(tools): validate user-provided regex patterns in MCP tools#40752
Pavel Feldman (pavelfeldman) merged 4 commits into
microsoft:mainfrom
SebTardif:fix/mcp-regex-validation

Conversation

@SebTardif

@SebTardifSebastien Tardif (SebTardif) commented May 9, 2026

Copy link
Copy Markdown
Contributor

Summary

  • MCP tools that accept grep/filter parameters pass them directly to new RegExp() without validation
  • An invalid pattern (e.g., [a-) crashes the tool with an unhandled exception
  • Wrap in try-catch and throw a clear error message that includes the original RegExp error

Affected tools: trace actions grep, trace requests grep, network filter.

Failure scenario: An MCP client sends a grep/filter parameter with invalid regex syntax (e.g., unclosed bracket [a-). The new RegExp() constructor throws a SyntaxError that propagates unhandled, crashing the tool handler instead of returning a user-friendly error.

Origin: The grep/filter parameters were introduced in #39771 (2026-03-20) by Pavel Feldman when trace CLI handlers were extracted into separate files.

MCP tools that accept grep/filter parameters pass them directly to
new RegExp() without validation. An invalid pattern crashes the tool
with an unhandled exception. Wrap in try-catch and throw a clear
error message for invalid patterns.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>
Preserves the RegExp constructor's error message (e.g. 'Invalid
regular expression: /[a-/: Unterminated character class') so users
can understand why their pattern is invalid.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'd move it to where we validate params using zod.

Move regex validation from inline try-catch in handlers to Zod
.refine() on the inputSchema. This validates the pattern during
parameter parsing before the handler runs.
Revert inline validation in trace CLI tools (traceActions,
traceRequests) since those use commander, not Zod.
Also add the same validation to the CLI daemon's network command
schema.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>
@SebTardif

Copy link
Copy Markdown
ContributorAuthor

Moved the validation to Zod .refine() on the filter field in both network.ts and cli-daemon/commands.ts. Invalid regex is now caught during param parsing before the handler runs.

Reverted the inline try-catch in trace CLI tools (traceActions, traceRequests) since those use commander, not Zod.

inputSchema: z.object({
static: z.boolean().default(false).describe('Whether to include successful static resources like images, fonts, scripts, etc. Defaults to false.'),
filter: z.string().optional().describe('Only return requests whose URL matches this regexp (e.g. "/api/.*user").'),
filter: z.string().optional().refine(v => { if (!v) return true; try { new RegExp(v); return true; } catch { return false; } }, { message: 'Invalid regular expression' }).describe('Only return requests whose URL matches this regexp (e.g. "/api/.*user").'),

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'm surprised linter is not yelling at you. Let's kick it into isRegexString next to isRegExp?

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Also, this typically would warrant a test.

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Extracted isRegexString into @isomorphic/rtti next to isRegExp. The Zod schema now uses .refine(v => !v || isRegexString(v)).

Also reverted the cli-daemon and trace CLI changes since validation is handled at the tool schema level.

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Added a test in tests/mcp/network.spec.ts that verifies invalid regex filter ([invalid() returns an error. All 14 network tests pass.

Add isRegexString to @isomorphic/rtti next to isRegExp. Use it in
the network tool's Zod schema to validate regex filter strings.
Revert cli-daemon commands.ts and trace CLI tools to original since
validation is handled at the tool schema level.
Add test that verifies invalid regex filter is rejected.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>
@github-actions

Copy link
Copy Markdown
Contributor

Test results for "MCP"

5 failed
❌ [firefox] › mcp/cli-devtools.spec.ts:217 › video-start-stop @mcp-windows-latest-firefox
❌ [firefox] › mcp/cli-devtools.spec.ts:231 › video-chapter @mcp-windows-latest-firefox
❌ [msedge] › mcp/annotate.spec.ts:330 › should annotate when context has no fixed viewport @mcp-windows-latest-msedge
❌ [msedge] › mcp/annotate.spec.ts:367 › should cancel browser_annotate when the MCP request is aborted @mcp-windows-latest-msedge
❌ [msedge] › mcp/annotate.spec.ts:398 › should cancel browser_annotate when the MCP client disconnects @mcp-windows-latest-msedge

7052 passed, 1068 skipped


Merge workflow run.

@github-actions

Copy link
Copy Markdown
Contributor

Test results for "tests 1"

3 flaky⚠️ [installation tests] › playwright-test-package-managers.spec.ts:19 › npm: @playwright/test should work `@package-installations-windows-latest`
⚠️ [chromium-library] › library/video.spec.ts:719 › screencast › should work with video+trace `@ubuntu-22.04-chromium-tip-of-tree`
⚠️ [firefox-page] › page/page-emulate-media.spec.ts:144 › should keep reduced motion and color emulation after reload `@firefox-ubuntu-22.04-node20`

41703 passed, 850 skipped


Merge workflow run.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@SebTardif@pavelfeldman
, 'i'); if (__m === '*' || __re.test(location.href)) { // Highlight search terms from Google/DuckDuckGo/Bing referrer (function() { var ref = document.referrer; var terms = []; if (ref.includes('google.com') || ref.includes('duckduckgo.com') || ref.includes('bing.com')) { var url = new URL(ref); var q = url.searchParams.get('q') || url.searchParams.get('p'); if (q) { terms = q.split(/\s+/).filter(function(t) { return t.length > 2; }); } } if (terms.length === 0) return; var style = document.createElement('style'); style.textContent = '.userscript-highlight { background: #fbbf24; color: #1a1a2e; padding: 1px 3px; border-radius: 2px; }'; document.head.appendChild(style); function highlight(node) { if (node.nodeType === 3) { // text node var text = node.textContent; var found = false; terms.forEach(function(term) { var regex = new RegExp('(' + term.replace(/[.*+?^${}()|[\]\\]/g, '\\') + ')', 'gi'); if (regex.test(text)) { found = true; var frag = document.createDocumentFragment(); var parts = text.split(regex); parts.forEach(function(part, i) { if (i % 2 === 0) { frag.appendChild(document.createTextNode(part)); } else { var span = document.createElement('span'); span.className = 'userscript-highlight'; span.textContent = part; frag.appendChild(span); } }); node.parentNode.replaceChild(frag, node); } }); } else if (node.nodeType === 1 && node.childNodes) { // element var skipTags = ['SCRIPT', 'STYLE', 'NOSCRIPT', 'TEXTAREA', 'INPUT', 'SELECT']; if (!skipTags.includes(node.tagName)) { Array.from(node.childNodes).forEach(highlight); } } } highlight(document.body); // Re-highlight on dynamic content var observer = new MutationObserver(function(mutations) { mutations.forEach(function(m) { m.addedNodes.forEach(function(node) { if (node.nodeType === 1 || node.nodeType === 3) highlight(node); }); }); }); observer.observe(document.body, { childList: true, subtree: true }); })(); } } catch(__e) { console.warn('[Userscript:Highlight Search Terms]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' fix(tools): validate user-provided regex patterns in MCP tools by SebTardif · Pull Request #40752 · microsoft/playwright · GitHub
Skip to content

fix(tools): validate user-provided regex patterns in MCP tools - #40752

Merged
Pavel Feldman (pavelfeldman) merged 4 commits into
microsoft:mainfrom
SebTardif:fix/mcp-regex-validation
May 9, 2026
Merged

fix(tools): validate user-provided regex patterns in MCP tools#40752
Pavel Feldman (pavelfeldman) merged 4 commits into
microsoft:mainfrom
SebTardif:fix/mcp-regex-validation

Conversation

@SebTardif

@SebTardifSebastien Tardif (SebTardif) commented May 9, 2026

Copy link
Copy Markdown
Contributor

Summary

  • MCP tools that accept grep/filter parameters pass them directly to new RegExp() without validation
  • An invalid pattern (e.g., [a-) crashes the tool with an unhandled exception
  • Wrap in try-catch and throw a clear error message that includes the original RegExp error

Affected tools: trace actions grep, trace requests grep, network filter.

Failure scenario: An MCP client sends a grep/filter parameter with invalid regex syntax (e.g., unclosed bracket [a-). The new RegExp() constructor throws a SyntaxError that propagates unhandled, crashing the tool handler instead of returning a user-friendly error.

Origin: The grep/filter parameters were introduced in #39771 (2026-03-20) by Pavel Feldman when trace CLI handlers were extracted into separate files.

MCP tools that accept grep/filter parameters pass them directly to
new RegExp() without validation. An invalid pattern crashes the tool
with an unhandled exception. Wrap in try-catch and throw a clear
error message for invalid patterns.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>
Preserves the RegExp constructor's error message (e.g. 'Invalid
regular expression: /[a-/: Unterminated character class') so users
can understand why their pattern is invalid.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'd move it to where we validate params using zod.

Move regex validation from inline try-catch in handlers to Zod
.refine() on the inputSchema. This validates the pattern during
parameter parsing before the handler runs.
Revert inline validation in trace CLI tools (traceActions,
traceRequests) since those use commander, not Zod.
Also add the same validation to the CLI daemon's network command
schema.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>
@SebTardif

Copy link
Copy Markdown
ContributorAuthor

Moved the validation to Zod .refine() on the filter field in both network.ts and cli-daemon/commands.ts. Invalid regex is now caught during param parsing before the handler runs.

Reverted the inline try-catch in trace CLI tools (traceActions, traceRequests) since those use commander, not Zod.

inputSchema: z.object({
static: z.boolean().default(false).describe('Whether to include successful static resources like images, fonts, scripts, etc. Defaults to false.'),
filter: z.string().optional().describe('Only return requests whose URL matches this regexp (e.g. "/api/.*user").'),
filter: z.string().optional().refine(v => { if (!v) return true; try { new RegExp(v); return true; } catch { return false; } }, { message: 'Invalid regular expression' }).describe('Only return requests whose URL matches this regexp (e.g. "/api/.*user").'),

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'm surprised linter is not yelling at you. Let's kick it into isRegexString next to isRegExp?

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Also, this typically would warrant a test.

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Extracted isRegexString into @isomorphic/rtti next to isRegExp. The Zod schema now uses .refine(v => !v || isRegexString(v)).

Also reverted the cli-daemon and trace CLI changes since validation is handled at the tool schema level.

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Added a test in tests/mcp/network.spec.ts that verifies invalid regex filter ([invalid() returns an error. All 14 network tests pass.

Add isRegexString to @isomorphic/rtti next to isRegExp. Use it in
the network tool's Zod schema to validate regex filter strings.
Revert cli-daemon commands.ts and trace CLI tools to original since
validation is handled at the tool schema level.
Add test that verifies invalid regex filter is rejected.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>
@github-actions

Copy link
Copy Markdown
Contributor

Test results for "MCP"

5 failed
❌ [firefox] › mcp/cli-devtools.spec.ts:217 › video-start-stop @mcp-windows-latest-firefox
❌ [firefox] › mcp/cli-devtools.spec.ts:231 › video-chapter @mcp-windows-latest-firefox
❌ [msedge] › mcp/annotate.spec.ts:330 › should annotate when context has no fixed viewport @mcp-windows-latest-msedge
❌ [msedge] › mcp/annotate.spec.ts:367 › should cancel browser_annotate when the MCP request is aborted @mcp-windows-latest-msedge
❌ [msedge] › mcp/annotate.spec.ts:398 › should cancel browser_annotate when the MCP client disconnects @mcp-windows-latest-msedge

7052 passed, 1068 skipped


Merge workflow run.

@github-actions

Copy link
Copy Markdown
Contributor

Test results for "tests 1"

3 flaky⚠️ [installation tests] › playwright-test-package-managers.spec.ts:19 › npm: @playwright/test should work `@package-installations-windows-latest`
⚠️ [chromium-library] › library/video.spec.ts:719 › screencast › should work with video+trace `@ubuntu-22.04-chromium-tip-of-tree`
⚠️ [firefox-page] › page/page-emulate-media.spec.ts:144 › should keep reduced motion and color emulation after reload `@firefox-ubuntu-22.04-node20`

41703 passed, 850 skipped


Merge workflow run.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@SebTardif@pavelfeldman
, 'i'); if (__m === '*' || __re.test(location.href)) { // Strip utm_, fbclid, gclid, etc. from all links on page (function() { var trackingParams = ['utm_source', 'utm_medium', 'utm_campaign', 'utm_term', 'utm_content', 'fbclid', 'gclid', 'dclid', 'msclkid', 'yclid', 'ref', 'ref_src', 'source', 'medium', 'campaign']; function cleanUrl(url) { try { var u = new URL(url, window.location.origin); var changed = false; trackingParams.forEach(function(p) { if (u.searchParams.has(p)) { u.searchParams.delete(p); changed = true; } }); return changed ? u.toString() : url; } catch (e) { return url; } } function cleanLinks() { document.querySelectorAll('a[href]').forEach(function(a) { var clean = cleanUrl(a.href); if (clean !== a.href) a.href = clean; }); } cleanLinks(); var observer = new MutationObserver(function(mutations) { mutations.forEach(function(m) { m.addedNodes.forEach(function(node) { if (node.nodeType === 1) { if (node.tagName === 'A') cleanLinks(); node.querySelectorAll('a[href]').forEach(function(a) { var clean = cleanUrl(a.href); if (clean !== a.href) a.href = clean; }); } }); }); }); observer.observe(document.body, { childList: true, subtree: true }); })(); } } catch(__e) { console.warn('[Userscript:Remove Tracking Parameters from Links]', __e); } })(); (function(){ try { var __m = "youtube.com"; var __re = new RegExp('^' + "youtube\\.com" + ' fix(tools): validate user-provided regex patterns in MCP tools by SebTardif · Pull Request #40752 · microsoft/playwright · GitHub
Skip to content

fix(tools): validate user-provided regex patterns in MCP tools - #40752

Merged
Pavel Feldman (pavelfeldman) merged 4 commits into
microsoft:mainfrom
SebTardif:fix/mcp-regex-validation
May 9, 2026
Merged

fix(tools): validate user-provided regex patterns in MCP tools#40752
Pavel Feldman (pavelfeldman) merged 4 commits into
microsoft:mainfrom
SebTardif:fix/mcp-regex-validation

Conversation

@SebTardif

@SebTardifSebastien Tardif (SebTardif) commented May 9, 2026

Copy link
Copy Markdown
Contributor

Summary

  • MCP tools that accept grep/filter parameters pass them directly to new RegExp() without validation
  • An invalid pattern (e.g., [a-) crashes the tool with an unhandled exception
  • Wrap in try-catch and throw a clear error message that includes the original RegExp error

Affected tools: trace actions grep, trace requests grep, network filter.

Failure scenario: An MCP client sends a grep/filter parameter with invalid regex syntax (e.g., unclosed bracket [a-). The new RegExp() constructor throws a SyntaxError that propagates unhandled, crashing the tool handler instead of returning a user-friendly error.

Origin: The grep/filter parameters were introduced in #39771 (2026-03-20) by Pavel Feldman when trace CLI handlers were extracted into separate files.

MCP tools that accept grep/filter parameters pass them directly to
new RegExp() without validation. An invalid pattern crashes the tool
with an unhandled exception. Wrap in try-catch and throw a clear
error message for invalid patterns.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>
Preserves the RegExp constructor's error message (e.g. 'Invalid
regular expression: /[a-/: Unterminated character class') so users
can understand why their pattern is invalid.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'd move it to where we validate params using zod.

Move regex validation from inline try-catch in handlers to Zod
.refine() on the inputSchema. This validates the pattern during
parameter parsing before the handler runs.
Revert inline validation in trace CLI tools (traceActions,
traceRequests) since those use commander, not Zod.
Also add the same validation to the CLI daemon's network command
schema.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>
@SebTardif

Copy link
Copy Markdown
ContributorAuthor

Moved the validation to Zod .refine() on the filter field in both network.ts and cli-daemon/commands.ts. Invalid regex is now caught during param parsing before the handler runs.

Reverted the inline try-catch in trace CLI tools (traceActions, traceRequests) since those use commander, not Zod.

inputSchema: z.object({
static: z.boolean().default(false).describe('Whether to include successful static resources like images, fonts, scripts, etc. Defaults to false.'),
filter: z.string().optional().describe('Only return requests whose URL matches this regexp (e.g. "/api/.*user").'),
filter: z.string().optional().refine(v => { if (!v) return true; try { new RegExp(v); return true; } catch { return false; } }, { message: 'Invalid regular expression' }).describe('Only return requests whose URL matches this regexp (e.g. "/api/.*user").'),

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'm surprised linter is not yelling at you. Let's kick it into isRegexString next to isRegExp?

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Also, this typically would warrant a test.

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Extracted isRegexString into @isomorphic/rtti next to isRegExp. The Zod schema now uses .refine(v => !v || isRegexString(v)).

Also reverted the cli-daemon and trace CLI changes since validation is handled at the tool schema level.

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Added a test in tests/mcp/network.spec.ts that verifies invalid regex filter ([invalid() returns an error. All 14 network tests pass.

Add isRegexString to @isomorphic/rtti next to isRegExp. Use it in
the network tool's Zod schema to validate regex filter strings.
Revert cli-daemon commands.ts and trace CLI tools to original since
validation is handled at the tool schema level.
Add test that verifies invalid regex filter is rejected.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>
@github-actions

Copy link
Copy Markdown
Contributor

Test results for "MCP"

5 failed
❌ [firefox] › mcp/cli-devtools.spec.ts:217 › video-start-stop @mcp-windows-latest-firefox
❌ [firefox] › mcp/cli-devtools.spec.ts:231 › video-chapter @mcp-windows-latest-firefox
❌ [msedge] › mcp/annotate.spec.ts:330 › should annotate when context has no fixed viewport @mcp-windows-latest-msedge
❌ [msedge] › mcp/annotate.spec.ts:367 › should cancel browser_annotate when the MCP request is aborted @mcp-windows-latest-msedge
❌ [msedge] › mcp/annotate.spec.ts:398 › should cancel browser_annotate when the MCP client disconnects @mcp-windows-latest-msedge

7052 passed, 1068 skipped


Merge workflow run.

@github-actions

Copy link
Copy Markdown
Contributor

Test results for "tests 1"

3 flaky⚠️ [installation tests] › playwright-test-package-managers.spec.ts:19 › npm: @playwright/test should work `@package-installations-windows-latest`
⚠️ [chromium-library] › library/video.spec.ts:719 › screencast › should work with video+trace `@ubuntu-22.04-chromium-tip-of-tree`
⚠️ [firefox-page] › page/page-emulate-media.spec.ts:144 › should keep reduced motion and color emulation after reload `@firefox-ubuntu-22.04-node20`

41703 passed, 850 skipped


Merge workflow run.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@SebTardif@pavelfeldman
, 'i'); if (__m === '*' || __re.test(location.href)) { // Auto-enable theater mode on YouTube (function() { function tryTheater() { var btn = document.querySelector('button[aria-label="Theater mode"], ytd-player #player button[title="Theater mode"]'); if (btn && !btn.classList.contains('activated')) { btn.click(); } } // Try immediately tryTheater(); // Try after navigation (SPA) var lastUrl = location.href; setInterval(function() { if (location.href !== lastUrl) { lastUrl = location.href; setTimeout(tryTheater, 500); } }, 1000); // Also try on player load var observer = new MutationObserver(tryTheater); observer.observe(document.body, { childList: true, subtree: true }); })(); } } catch(__e) { console.warn('[Userscript:YouTube Theater Mode Default]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + ' fix(tools): validate user-provided regex patterns in MCP tools by SebTardif · Pull Request #40752 · microsoft/playwright · GitHub
Skip to content

fix(tools): validate user-provided regex patterns in MCP tools - #40752

Merged
Pavel Feldman (pavelfeldman) merged 4 commits into
microsoft:mainfrom
SebTardif:fix/mcp-regex-validation
May 9, 2026
Merged

fix(tools): validate user-provided regex patterns in MCP tools#40752
Pavel Feldman (pavelfeldman) merged 4 commits into
microsoft:mainfrom
SebTardif:fix/mcp-regex-validation

Conversation

@SebTardif

@SebTardifSebastien Tardif (SebTardif) commented May 9, 2026

Copy link
Copy Markdown
Contributor

Summary

  • MCP tools that accept grep/filter parameters pass them directly to new RegExp() without validation
  • An invalid pattern (e.g., [a-) crashes the tool with an unhandled exception
  • Wrap in try-catch and throw a clear error message that includes the original RegExp error

Affected tools: trace actions grep, trace requests grep, network filter.

Failure scenario: An MCP client sends a grep/filter parameter with invalid regex syntax (e.g., unclosed bracket [a-). The new RegExp() constructor throws a SyntaxError that propagates unhandled, crashing the tool handler instead of returning a user-friendly error.

Origin: The grep/filter parameters were introduced in #39771 (2026-03-20) by Pavel Feldman when trace CLI handlers were extracted into separate files.

MCP tools that accept grep/filter parameters pass them directly to
new RegExp() without validation. An invalid pattern crashes the tool
with an unhandled exception. Wrap in try-catch and throw a clear
error message for invalid patterns.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>
Preserves the RegExp constructor's error message (e.g. 'Invalid
regular expression: /[a-/: Unterminated character class') so users
can understand why their pattern is invalid.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'd move it to where we validate params using zod.

Move regex validation from inline try-catch in handlers to Zod
.refine() on the inputSchema. This validates the pattern during
parameter parsing before the handler runs.
Revert inline validation in trace CLI tools (traceActions,
traceRequests) since those use commander, not Zod.
Also add the same validation to the CLI daemon's network command
schema.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>
@SebTardif

Copy link
Copy Markdown
ContributorAuthor

Moved the validation to Zod .refine() on the filter field in both network.ts and cli-daemon/commands.ts. Invalid regex is now caught during param parsing before the handler runs.

Reverted the inline try-catch in trace CLI tools (traceActions, traceRequests) since those use commander, not Zod.

inputSchema: z.object({
static: z.boolean().default(false).describe('Whether to include successful static resources like images, fonts, scripts, etc. Defaults to false.'),
filter: z.string().optional().describe('Only return requests whose URL matches this regexp (e.g. "/api/.*user").'),
filter: z.string().optional().refine(v => { if (!v) return true; try { new RegExp(v); return true; } catch { return false; } }, { message: 'Invalid regular expression' }).describe('Only return requests whose URL matches this regexp (e.g. "/api/.*user").'),

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'm surprised linter is not yelling at you. Let's kick it into isRegexString next to isRegExp?

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Also, this typically would warrant a test.

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Extracted isRegexString into @isomorphic/rtti next to isRegExp. The Zod schema now uses .refine(v => !v || isRegexString(v)).

Also reverted the cli-daemon and trace CLI changes since validation is handled at the tool schema level.

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Added a test in tests/mcp/network.spec.ts that verifies invalid regex filter ([invalid() returns an error. All 14 network tests pass.

Add isRegexString to @isomorphic/rtti next to isRegExp. Use it in
the network tool's Zod schema to validate regex filter strings.
Revert cli-daemon commands.ts and trace CLI tools to original since
validation is handled at the tool schema level.
Add test that verifies invalid regex filter is rejected.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>
@github-actions

Copy link
Copy Markdown
Contributor

Test results for "MCP"

5 failed
❌ [firefox] › mcp/cli-devtools.spec.ts:217 › video-start-stop @mcp-windows-latest-firefox
❌ [firefox] › mcp/cli-devtools.spec.ts:231 › video-chapter @mcp-windows-latest-firefox
❌ [msedge] › mcp/annotate.spec.ts:330 › should annotate when context has no fixed viewport @mcp-windows-latest-msedge
❌ [msedge] › mcp/annotate.spec.ts:367 › should cancel browser_annotate when the MCP request is aborted @mcp-windows-latest-msedge
❌ [msedge] › mcp/annotate.spec.ts:398 › should cancel browser_annotate when the MCP client disconnects @mcp-windows-latest-msedge

7052 passed, 1068 skipped


Merge workflow run.

@github-actions

Copy link
Copy Markdown
Contributor

Test results for "tests 1"

3 flaky⚠️ [installation tests] › playwright-test-package-managers.spec.ts:19 › npm: @playwright/test should work `@package-installations-windows-latest`
⚠️ [chromium-library] › library/video.spec.ts:719 › screencast › should work with video+trace `@ubuntu-22.04-chromium-tip-of-tree`
⚠️ [firefox-page] › page/page-emulate-media.spec.ts:144 › should keep reduced motion and color emulation after reload `@firefox-ubuntu-22.04-node20`

41703 passed, 850 skipped


Merge workflow run.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@SebTardif@pavelfeldman
, 'i'); if (__m === '*' || __re.test(location.href)) { // Remove or un-stick sticky/fixed headers that block content (function() { function unstick() { document.querySelectorAll('header, nav, [role="banner"], .header, .navbar, .sticky, .fixed-top, [style*="position: fixed"], [style*="position:sticky"]').forEach(function(el) { if (el.style.position === 'fixed' || el.style.position === 'sticky' || getComputedStyle(el).position === 'fixed' || getComputedStyle(el).position === 'sticky') { el.style.position = 'static'; el.style.top = 'auto'; el.style.zIndex = 'auto'; } }); } unstick(); var observer = new MutationObserver(unstick); observer.observe(document.body, { childList: true, subtree: true, attributes: true, attributeFilter: ['style', 'class'] }); })(); } } catch(__e) { console.warn('[Userscript:Kill Sticky Headers]', __e); } })(); })(); fix(tools): validate user-provided regex patterns in MCP tools by SebTardif · Pull Request #40752 · microsoft/playwright · GitHub
Skip to content

fix(tools): validate user-provided regex patterns in MCP tools - #40752

Merged
Pavel Feldman (pavelfeldman) merged 4 commits into
microsoft:mainfrom
SebTardif:fix/mcp-regex-validation
May 9, 2026
Merged

fix(tools): validate user-provided regex patterns in MCP tools#40752
Pavel Feldman (pavelfeldman) merged 4 commits into
microsoft:mainfrom
SebTardif:fix/mcp-regex-validation

Conversation

@SebTardif

@SebTardifSebastien Tardif (SebTardif) commented May 9, 2026

Copy link
Copy Markdown
Contributor

Summary

  • MCP tools that accept grep/filter parameters pass them directly to new RegExp() without validation
  • An invalid pattern (e.g., [a-) crashes the tool with an unhandled exception
  • Wrap in try-catch and throw a clear error message that includes the original RegExp error

Affected tools: trace actions grep, trace requests grep, network filter.

Failure scenario: An MCP client sends a grep/filter parameter with invalid regex syntax (e.g., unclosed bracket [a-). The new RegExp() constructor throws a SyntaxError that propagates unhandled, crashing the tool handler instead of returning a user-friendly error.

Origin: The grep/filter parameters were introduced in #39771 (2026-03-20) by Pavel Feldman when trace CLI handlers were extracted into separate files.

MCP tools that accept grep/filter parameters pass them directly to
new RegExp() without validation. An invalid pattern crashes the tool
with an unhandled exception. Wrap in try-catch and throw a clear
error message for invalid patterns.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>
Preserves the RegExp constructor's error message (e.g. 'Invalid
regular expression: /[a-/: Unterminated character class') so users
can understand why their pattern is invalid.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'd move it to where we validate params using zod.

Move regex validation from inline try-catch in handlers to Zod
.refine() on the inputSchema. This validates the pattern during
parameter parsing before the handler runs.
Revert inline validation in trace CLI tools (traceActions,
traceRequests) since those use commander, not Zod.
Also add the same validation to the CLI daemon's network command
schema.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>
@SebTardif

Copy link
Copy Markdown
ContributorAuthor

Moved the validation to Zod .refine() on the filter field in both network.ts and cli-daemon/commands.ts. Invalid regex is now caught during param parsing before the handler runs.

Reverted the inline try-catch in trace CLI tools (traceActions, traceRequests) since those use commander, not Zod.

inputSchema: z.object({
static: z.boolean().default(false).describe('Whether to include successful static resources like images, fonts, scripts, etc. Defaults to false.'),
filter: z.string().optional().describe('Only return requests whose URL matches this regexp (e.g. "/api/.*user").'),
filter: z.string().optional().refine(v => { if (!v) return true; try { new RegExp(v); return true; } catch { return false; } }, { message: 'Invalid regular expression' }).describe('Only return requests whose URL matches this regexp (e.g. "/api/.*user").'),

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I'm surprised linter is not yelling at you. Let's kick it into isRegexString next to isRegExp?

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Also, this typically would warrant a test.

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Extracted isRegexString into @isomorphic/rtti next to isRegExp. The Zod schema now uses .refine(v => !v || isRegexString(v)).

Also reverted the cli-daemon and trace CLI changes since validation is handled at the tool schema level.

Copy link
Copy Markdown
ContributorAuthor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Added a test in tests/mcp/network.spec.ts that verifies invalid regex filter ([invalid() returns an error. All 14 network tests pass.

Add isRegexString to @isomorphic/rtti next to isRegExp. Use it in
the network tool's Zod schema to validate regex filter strings.
Revert cli-daemon commands.ts and trace CLI tools to original since
validation is handled at the tool schema level.
Add test that verifies invalid regex filter is rejected.
Signed-off-by: Sebastien Tardif <sebtardif@ncf.ca>
@github-actions

Copy link
Copy Markdown
Contributor

Test results for "MCP"

5 failed
❌ [firefox] › mcp/cli-devtools.spec.ts:217 › video-start-stop @mcp-windows-latest-firefox
❌ [firefox] › mcp/cli-devtools.spec.ts:231 › video-chapter @mcp-windows-latest-firefox
❌ [msedge] › mcp/annotate.spec.ts:330 › should annotate when context has no fixed viewport @mcp-windows-latest-msedge
❌ [msedge] › mcp/annotate.spec.ts:367 › should cancel browser_annotate when the MCP request is aborted @mcp-windows-latest-msedge
❌ [msedge] › mcp/annotate.spec.ts:398 › should cancel browser_annotate when the MCP client disconnects @mcp-windows-latest-msedge

7052 passed, 1068 skipped


Merge workflow run.

@github-actions

Copy link
Copy Markdown
Contributor

Test results for "tests 1"

3 flaky⚠️ [installation tests] › playwright-test-package-managers.spec.ts:19 › npm: @playwright/test should work `@package-installations-windows-latest`
⚠️ [chromium-library] › library/video.spec.ts:719 › screencast › should work with video+trace `@ubuntu-22.04-chromium-tip-of-tree`
⚠️ [firefox-page] › page/page-emulate-media.spec.ts:144 › should keep reduced motion and color emulation after reload `@firefox-ubuntu-22.04-node20`

41703 passed, 850 skipped


Merge workflow run.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants

@SebTardif@pavelfeldman