Browserless
Also known as: Browserless.io, BrowserQL, Browsers as a Service
Headless browser infrastructure running pooled Chrome, Firefox and WebKit over WebSocket, REST and an official MCP server, with a stealth first query language, session persistence and self hosting into a VPC or air gapped network.
Browserless is headless browser infrastructure for developers and agents, founded by Joel Griffith and in market since around 2017, which makes it the elder of a category otherwise populated by agent era startups. It is bootstrapped rather than venture funded, reports more than 10,000 paying customers including Microsoft, Heroku, Webflow, Samsara and CVS Health, and has over 12,800 GitHub stars and 160 million Docker pulls.
The core is a pooled cloud of Chrome, Firefox and WebKit instances reachable over WebSocket or REST, with Puppeteer and Playwright working transparently against it, so an existing automation codebase moves off local infrastructure by changing a connection string. Around that sit REST endpoints for one shot screenshots, PDFs and scrapes, residential and datacenter proxy rotation, and automatic CAPTCHA handling covering reCAPTCHA, hCaptcha, Cloudflare Turnstile and Amazon WAF. Its distinctive product is BrowserQL, a proprietary stealth first query language for bot bypass and structured extraction, offered as a higher level declarative alternative to the Playwright and Puppeteer APIs for sites that actively resist automation.
The V2 release is where it became genuinely agent shaped. Session persistence keeps cookies, cache and browser state alive between sessions with reconnect, which cuts repeated page loads and proxy consumption on long running work. Session replay supports debugging after the fact, Chrome extensions can be loaded, and hybrid automations stream a live browser session while a script executes, which is the practical answer to watching an agent that has gone off the rails. An official MCP server connects any MCP compatible client, with Claude, Cursor, Windsurf and ChatGPT agent mode all working without code changes.
Deployment is its strongest structural position in this lane. The same API runs on managed cloud, on dedicated infrastructure in a chosen region, or entirely inside a customer VPC, on premises or an air gapped network, so data never crosses a security boundary. Compliance matches: SOC 2 Type II, GDPR and HIPAA with a DPA available, single sign on and a dedicated technical account manager at the enterprise tier. One licensing detail to know: the Docker image is free for non commercial use, and commercial self hosting requires a licence.
Vendor details
Canonical URL
https://www.browserless.io
Category
Agent infrastructure
Company status
independent
Use cases & customers
Target customers
Deployment options
In practice
You already wrote the Playwright or Puppeteer automation and simply want someone else to run the browsers. Point the existing code at a connection string rather than rewriting it for an agent framework.
Your workload cannot send data to a third party cloud. The same API runs inside your own VPC, on premises or on an air gapped network, which is the reason regulated teams pick it over the newer managed only platforms.
Your agent needs to survive a long task without reloading everything. Session persistence keeps cookies, cache and browser state alive across reconnects, cutting page loads and proxy consumption.
Sources & related URLs
Agentic Index coverage score
9.5 / 14 capabilities · 68%
| Integrations & Tool CallingPuppeteer and Playwright work transparently against it, alongside WebSocket endpoints, REST APIs for screenshots, PDFs and scrapes, residential and datacenter proxy rotation, and an official MCP server. An existing automation codebase moves across by changing a connection string. 2026-08-05 | Full |
|---|---|
| Workflow OrchestrationBrowserQL scripts multi step browser sequences declaratively and hybrid automations combine scripted and live steps, but orchestration of the wider agent workflow belongs to the calling application; Browserless supplies the browser, not the control loop. 2026-08-05 | Partial |
| Knowledge Grounding & RAGStructured extraction through BrowserQL acquires web data, but that is data acquisition rather than knowledge grounding: there is no retrieval index, vector store or citation layer, and grounding belongs to whatever consumes the output. 2026-08-05 | Unable to verify |
| Human Oversight & GuardrailsHybrid automations stream a live browser session while a script executes, so a human can watch an agent in flight and intervene, which is a real oversight surface, but no approval gates, action allow lists or policy guardrails are documented. 2026-08-05 | Partial |
| Security, Identity & GovernanceSOC 2 Type II, GDPR and HIPAA compliant with a DPA available on request, a published trust centre covering security, privacy and compliance, single sign on at the enterprise tier, and the option to keep data entirely inside the customer security boundary. Described in independent comparison as the most complete compliance posture in its category short of Anchor. 2026-08-05 | Full |
| Observability & AuditabilitySession replay reconstructs exactly what a browser session did after the fact, and live session streaming shows it in flight. For a component whose failures are otherwise invisible inside a headless process, that is substantive observability rather than logging. 2026-08-05 | Full |
| Memory & State PersistenceSession persistence keeps cookies, cache and full browser state alive between sessions with reconnect, so a long running agent resumes where it left off rather than reloading, which also cuts proxy consumption. A documented V2 capability and a genuine differentiator in this lane. 2026-08-05 | Full |
| Deployment & Data ResidencyThe strongest deployment range in the browser lane: fully managed cloud, dedicated infrastructure in a chosen region, or self hosted inside the customer's own VPC, on premises or on an air gapped network, with the same API everywhere and data never leaving the security boundary. Docker images make self hosting first class. 2026-08-05 | Full |
| Prebuilt Agents, Templates & PacksPrebuilt REST endpoints handle common one shot tasks such as screenshots, PDF generation and scraping without writing browser code, and CAPTCHA handling ships built in, but there is no prebuilt agent catalogue or template gallery. 2026-08-05 | Partial |
| Triggers & Channel CoverageInvoked over WebSocket, REST or MCP by whatever calls it, which is broad protocol coverage, but no scheduling, event triggers or inbound channels are provided by the platform itself. 2026-08-05 | Partial |
| Model Flexibility & RoutingNo model involvement at all. Browserless supplies the browser and leaves every model decision to the calling agent, which is the correct architectural boundary for this component but scores nothing on this axis. 2026-08-05 | Unable to verify |
| APIs, SDKs & MCP ExtensibilityREST and WebSocket APIs, transparent Puppeteer and Playwright compatibility, Chrome extension loading, published Docker images, and an official MCP server that connects Claude, Cursor, Windsurf and ChatGPT agent mode with zero code changes. 2026-08-05 | Full |
| Testing, Debugging & OptimizationSession replay and live streaming give strong debugging, and the platform is explicitly used for headless testing and Lighthouse audits, but no evaluation harness, benchmark suite or regression testing for agent behaviour is provided. 2026-08-05 | Partial |
| Browser & Computer UseThis is the product: real Chrome, Firefox and WebKit instances that navigate dynamic pages, interact with elements, click, execute scripts and complete browser workflows, with fingerprint management and bot detection bypass through BrowserQL. 2026-08-05 | Full |
The Agentic Index coverage score grades every vendor Full, Partial or Unable to verify against the same 14 buyer facing capabilities, from public evidence only. Each capability links to how all vendors in the index score on it. How this evidence is graded
Pricing
Free tier; paid plans reported from about $25 per month (Prototyping) to about $350 per month (Scale); Enterprise custom. Annual billing saves 30 percent
plan allowance plus metered units, concurrency scaled
What is public
The tier structure, free tier, annual discount and enterprise feature list are public, and compliance posture is published in a trust centre; exact rates circulate mainly through third party comparisons.
Billing mechanics
A free tier leading into published paid plans from roughly $25 to $350 a month, with annual billing discounted about 30 percent against monthly. Enterprise adds private infrastructure, GPU support, single sign on and a dedicated technical account manager. Above plan allowances, overage rates apply and proxy and CAPTCHA units are consumed separately.
Cost watchouts
Proxy and CAPTCHA consumption is billed on top of plan allowances, cost climbs with concurrency rather than requests, and COMMERCIAL self hosting requires a licence even though the Docker image is free for non commercial use
Variable cost rationale
Concurrency based scaling plus separately metered proxies and CAPTCHA solves mean cost tracks workload shape rather than headcount, though the self hosted option gives a hard ceiling for teams willing to run the infrastructure.
Additional watchouts
Cost is driven by concurrency rather than request count, so a workload that fans out browsers in parallel escalates faster than the sticker suggests. Independent reviews note it climbs quickly at scale. The self hosting licence distinction also catches teams out: free for non commercial use, licensed for commercial.
Overage / add-ons
Overage rates plus separate unit consumption for proxies and CAPTCHA solving are billed in addition to plan allowances
Sales call required
Mixed (some tiers require a call)
Free / trial
Free tier for getting started, plus a Docker image that is free for non commercial self hosted use
Lowest paid plan
Prototyping
Commercial notes
Being bootstrapped rather than venture funded is commercially relevant here: the pricing has been stable and incremental for years rather than repriced around a growth thesis, which is part of why teams with existing Puppeteer and Playwright codebases treat it as the low risk option. The self hosted route also caps vendor spend entirely for teams willing to run the browser pool themselves, subject to the commercial licence.
Key ambiguities
The plan rates come from independent comparisons rather than a retrieved first party rate card, and the concurrency thresholds that drive real cost are not stated. Enterprise pricing covering private infrastructure, GPU support, SSO and a dedicated technical account manager is quote only.
Missing data
First party confirmation of the plan rates, concurrency limits per tier, proxy and CAPTCHA unit rates, and the commercial self hosting licence cost.
Related vendors
- Acrab — Singapore compute infrastructure company building a full stack…
- AgentOps — Agent observability and reliability platform with broad model and…
- Agno — High-performance agent runtime and framework (formerly Phidata) with…
- AIsa — Unified resource and payment gateway for AI agents that lets them…
- AlphaBitCore — AI control plane that governs how models, agents, tools, and…
- Anchor Browser — Cloud hosted browser infrastructure that lets AI agents operate real…
Alternatives to Browserless
The closest documented capability profiles to Browserless among agent infrastructure platforms tracked by Agentic Index, ordered by similarity on the same 14 point evidence the rankings use. No vendor pays for placement.
- Unikraft8.0 / 14A lighter documented profile than Browserless
- Bright Data9.5 / 14Adds documented Knowledge Grounding & RAG
- Daytona7.5 / 14A lighter documented profile than Browserless
- Temporal9.5 / 14Fuller documented coverage on Workflow Orchestration and Triggers & Channel Coverage
- Apify9.0 / 14Adds documented Knowledge Grounding & RAG
- DBOS9.0 / 14Adds documented Model Flexibility & Routing
Similarity is computed from each vendor's Agentic Index coverage score evidence, axis by axis, not from the totals. How this evidence is graded