2026-10-11 17:09 UTC

Independent use will determine whether Hands provides reliable and safely constrainable OS-level Windows and real-Chrome control for coding agents.

state: expiredheat: lowuncertainty: highconvergesscott: mediumcomputer-use agent-harnesses agentic-security

What is this?

Hands is presented as a Rust MCP/CLI tool that lets coding agents observe and control the Windows desktop, including clicking in real Chrome. The supplied material claims OS-level containment through Microsoft Execution Container and debugging through DAP, but the snippets do not identify its creator or independently establish Hands’ reliability, Chrome support, or safety; an early commit explicitly said “No Chrome,” suggesting that capability was added later. Independent use and evaluation therefore remain necessary to determine whether its current controls are dependable and safely constrainable.

Why it matters to Scott

Hands’ claimed pairing of MCP-based observation/action with OS-level containment converges with Scott’s “hands and eyes” and SiloOS position that capable agents need structural boundaries, not protocol-level trust. If independently validated, its Windows and real-Chrome control could extend Scott’s MCP and disposable-Windows work; currently the thin evidence and unverified safety claims limit it to an evaluation target rather than a changed conclusion.
ip:source.mcp-as-the-tool-belt-standard-giving-ai-agents-hands-and-eyes-ebookip:framework.siloosdev:project.fde-bidev:technology.proxmox-veradar:agent-desktop-accessibility-automationradar:concept.computer-useradar:concept.agent-securityradar:concept.agent-harnesses
queries asked of Scott's wikis
  • Windows computer-use harnesses for coding agents
  • OS-level containment versus tool permission controls
  • real-browser automation versus browser APIs
  • computer-use reliability and verification loops
  • agent desktop-control threat models
  • MCP tools for GUI observation and action

Measured heat

no measured readings yet — the hourly heat pass fills this in

How the heat travelled

no chain yet — the hourly chain pass fills this in

Evidence (2) — ⭐ canonical anchor

sourceobjectauthorscorecomments
🟧 hnShow HN: Hands-Rust MCP/CLI that sees the Windows desktop and clicks real Chromeryan-b10
🟧 echo.github ⭐Earliest substantive product commit: “crate + observe (screenshot, grid, UIA)… No Chrome.” The repository README describes Hands as a WindowRyan (Ryan-AI-Studios)——

Interpretation history

Decision trace