Execute sensitive browser actions (login, payments, form filling) outside the core agent loop using a dedicated CLI tool...
Execute sensitive browser actions securely by delegating credential handling, payments, and form filling to a dedicated subprocess with isolated context.
The ATXP_CONNECTION environment variable must be defined for LLM access. This provides the connection string to the ATXP platform.
If not configured, see the ATXP CLI for setup instructions.
Create a JSON file with the user's sensitive data. Ask the user for the values needed:
{
"credentials": {
"username": "user@example.com",
"password": "secret"
},
"payment": {
"cardNumber": "4111111111111111",
"expiry": "12/28",
"cvv": "123",
"billingZip": "94102"
},
"personal": {
"fullName": "Jane Doe",
"phone": "+1-555-0123",
"address": "123 Main St"
}
}
Only include the fields needed for the task. Store securely and delete after use.
npx sensitive-browser "<task>" \
--sensitive-data ./creds.json \
--url <target-url> \
--state ./session.json \
--output ./session.json
Options:
| Option | Description |
|---|---|
<task> |
Natural language task (e.g., "log in with credentials") |
-d, --sensitive-data <path> |
Path to sensitive data JSON (required) |
-u, --url <url> |
Target URL to navigate to |
-s, --state <path> |
Playwright storage state to load |
-o, --output <path> |
Output path for updated state |
When used with agent-browser, hand off session state:
# Save current session
agent-browser --session myapp state save ./session.json
# Hand off to sensitive-browser for login
npx sensitive-browser "log in with credentials" \
--state ./session.json \
--sensitive-data ./creds.json
# Resume agent-browser with authenticated session
agent-browser --session myapp state load ./session.json
Supported field categories:
credentials: username, password, emailpayment: cardNumber, expiry, cvv, billingZip, cardholderNamepersonal: fullName, firstName, lastName, phone, address, city, state, zip, country, dateOfBirthkey: value pairs as needed