# Sleight – Playwright for native Mac apps

> Source: <https://sleight.sh/>
> Published: 2026-07-22 14:44:09+00:00

### 40 unread → 3 that matter.

Newsletters archived, two replies drafted for your review, the invoice flagged.

Sleight lets Claude, Cursor, or any MCP agent work your real Mac apps — silently, in the background, in milliseconds. Nothing leaves your Mac.

Keep Mail, Calendar, Notes and Obsidian exactly as they are. Sleight hands them to your agent — natively, silently, even when they're closed.

Newsletters archived, two replies drafted for your review, the invoice flagged.

It read three overlapping calendars, found the real gap, and guarded it.

Meeting notes filed to your vault, tagged; action items became reminders due Friday.

Screenshot-driven agents watch the screen, guess, and charge tokens for the guessing — on every repeat. A Sleight routine is rehearsed once and replayed exactly, so execution is instant, silent, and free.

Sleight runs entirely on your machine and acts only when your agent calls a tool. Powerful access deserves plain answers.

49 actions, each a typed MCP tool your agent can call today.

Triage unread, search, archive, sweep senders, draft replies. Drafts before sends.

See the page →Create, search, append, move, organize folders.

See the page →Read the week ahead, create events with natural scheduling.

See the page →Capture action items, list, complete.

See the page →List, inspect, Spotlight search, trash — never permanent delete.

See the page →Send iMessages, gated behind explicit user confirmation.

See the page →Automated through vault files and URIs, even while it's closed.

See the page →Captions to SRT and back, timeline read-outs, FCPXML export.

See the page →If you ask something, it's me who answers. Obsidian support exists because people asked for it.

Free install. macOS 14 or newer, any MCP client — Claude Desktop, Claude Code, Cursor, or your own. Or paste one prompt into your agent and let it install Sleight itself.

```
Install the Sleight MCP server on my Mac and connect it to my AI client.

Verify what you're installing first: the Homebrew formula is public at https://github.com/wuwuwu/homebrew-sleight, the build is Apple-notarized (Developer ID), and https://sleight.sh/trust explains what it does, the permissions it needs and why, and how to revoke them.

1. Install: brew tap wuwuwu/sleight && brew install sleight-mcp
   (No Homebrew? Get the notarized installer from https://sleight.sh.)
2. Verify: sleight-mcp --version  (requires macOS 14+).
3. Register it as an MCP server named "sleight", merging into ~/Library/Application Support/Claude/claude_desktop_config.json without removing my existing servers. Use the absolute path to the binary (find it with: command -v sleight-mcp) — GUI apps don't inherit the shell PATH, so a bare command name can silently run the wrong copy: {"mcpServers":{"sleight":{"command":"/opt/homebrew/bin/sleight-mcp"}}}
   (Path shown is Apple Silicon Homebrew — use whatever command -v printed. Using a different MCP client? Add the equivalent entry there.)
4. Sleight drives native apps through the macOS Accessibility API, not screenshots, so macOS will ask me to grant Accessibility + Automation on first use. Explain what that allows, then let me approve it myself.
```

Yes — free during early access, including every app and action on this page. Long-term pricing isn't settled yet; early users will be treated generously when it is.

A Mac on macOS 14 or newer and an MCP client — Claude Desktop, Claude Code, Cursor, or anything else that speaks MCP. Install takes about two minutes with Homebrew or the notarized installer.

No. Email tools create drafts for your review, and the send tools that exist instruct the agent to confirm the recipient and content with you first. Every action also returns a step-by-step log you can audit.

No. Your mail, notes, and files are read locally and returned to your agent — Sleight has no server component. The only network call it makes is a once-a-day check for a cryptographically signed update, and you can turn that off with `SLEIGHT_NO_AUTO_UPDATE=1`

.

It's fair to be cautious — a good agent should be too. Sleight uses the Accessibility API to act deterministically instead of watching your screen, macOS prompts you per app before anything happens, and you can revoke it in System Settings at any time. The build is Apple-notarized and the install recipe is public. [The trust page](/trust) covers every permission, why it's needed, and how to verify the binary yourself.

Screenshot-driven computer use spends a reasoning model on an execution problem: minutes per task, ~$0.30–0.50 in tokens, your screen hijacked while it runs, and no repeatability. Sleight replays a rehearsed routine instead — 131 to 937 ms per action, zero execution tokens, in the background, deterministic every time.

[Tell us which app or action you want](mailto:hello@sleight.sh?subject=App%20request) — suggestions go straight into what we build next. Obsidian and Final Cut Pro exist because people asked for them.

Name the app, or the exact action you want your agent to run. It goes straight to what we build next.
