Engine, tab, and profile are selected in trusted Melaya UI, and confirming issues a short-lived, single-use session grant. Listing tabs, attaching, and switching are not agent tools at all; they simply do not exist on the model side.
Confirm issues a signed, single-use, short-lived session grant
The mirror shows the controlled browser with the agent's element references overlaid, and every tool call streams beside it. No black box: the same references drive the run and the audit trail.
browser.get_screen_tree()Reads the page: 42 elements, refs @e1 to @e42
browser.click("@e7")Focuses the quantity field
browser.input_text("@e7", "12")Types the order quantity
browser.submit("@e12")Pauses: submit requires your approval
Choose Safe, Payments-only, or Autonomous per automation, the same autonomy model as Mobile Agents. Whatever the mode, the guardrails below never switch off.
The runner detects the browsers installed on your machine and you choose which one each session uses. The browser, its profile, and its data never leave your computer.
The default engine, launched in a dedicated profile your agents cannot escape.
First-class on Windows fleets; same trusted picker, same guardrails.
Fully supported, including Shields; pick it like any other engine.
Run a fresh browser from inside Melaya, or bring Melaya to the browser you already use. Same governance, same live view, same one-click stop.
Open a dedicated, controllable browser straight from your runner. Nothing to install, ready in seconds.
Open Browser ControlInstall the Melaya extension in your own Chrome, Edge, or Brave to drive the tabs you already have open, with approvals in the popup.
Get the extensionThe short version: you stay in charge, the browser stays on your machine, and nothing consequential happens without you.
A governed way to let Melaya agents use a real web browser: they read the page structure, click, type, and navigate, while you watch live, approve consequential actions, and can stop everything with one click.
Google Chrome, Microsoft Edge, and Brave are first-class engines. Your runner detects what is installed and you pick which one to launch.
No. Agents cannot list, open, switch, or close your tabs. You select the target in a trusted picker, sessions run in a dedicated profile with no personal logins, and every session is scoped to the sites you allow.
On your machine, through the Melaya runner. The browser and its data stay local; you choose the AI model separately, including local models.
Agents never type credentials or payment details. For sign-in, CAPTCHA, or checkout the agent pauses and hands control to you, then resumes after you finish.
That is the extension path, and it is coming soon. Today Browser Control launches a dedicated, controllable browser; the extension will add already-open tabs and real-profile sessions with approvals in the extension popup.
Launch a controllable browser from your runner, grant a session in the trusted picker, and watch your first web automation work.
Local execution. Dedicated profiles. Approvals on every consequential action.