{
  "manifest_version": "1.0.0",
  "template": {
    "id": "f7a35f85-fedf-417d-ad04-1f4a1caf2685",
    "slug": "camofox-stealth-browser",
    "name": "Camofox Browser | Open Source Browserless Alternative",
    "description": "Stealth Firefox browser API for AI agents, locked down by default",
    "url": "https://railway.com/deploy/camofox-stealth-browser",
    "upstream": {
      "image": "ghcr.io/jo-inc/camofox-browser:1.14.0"
    }
  },
  "services": [
    {
      "name": "Camofox",
      "source": {
        "image": "ghcr.io/jo-inc/camofox-browser:1.14.0"
      },
      "needs_volume": true,
      "volume_mount_path": "/data",
      "http": true
    }
  ],
  "required_inputs": [
    {
      "key": "PORT",
      "service": "Camofox",
      "description": "The port the server listens on. The image bakes CAMOFOX_PORT=9377 and prefers it over Railway's injected PORT, so this must stay 9377 or the platform routes traffic to a port nothing is listening on.",
      "secret": false,
      "strategy": "default",
      "default": "9377"
    },
    {
      "key": "CAMOFOX_API_KEY",
      "service": "Camofox",
      "description": "Gates cookie and auth-session import (POST /sessions/:userId/cookies), which is how you hand the browser a logged-in session. Separate from the access key so you can share it with a narrower caller.",
      "secret": true,
      "strategy": "generate",
      "generate": "random_base64_32"
    },
    {
      "key": "CAMOFOX_ADMIN_KEY",
      "service": "Camofox",
      "description": "Gates POST /stop, which shuts the browser down. Kept separate so an operator can stop the browser without holding the access key.",
      "secret": true,
      "strategy": "generate",
      "generate": "random_base64_32"
    },
    {
      "key": "CAMOFOX_ACCESS_KEY",
      "service": "Camofox",
      "description": "The master key. Every route except /health requires 'Authorization: Bearer <this>'. Without it the browser API would be open to anyone who finds the URL, including /evaluate, which runs arbitrary JavaScript. Do not clear it.",
      "secret": true,
      "strategy": "generate",
      "generate": "random_base64_32"
    },
    {
      "key": "CAMOFOX_TRACES_DIR",
      "service": "Camofox",
      "description": "Playwright traces, when a session is created with trace enabled. Capped at 50 MB and 24 hours by default.",
      "secret": false,
      "strategy": "default",
      "default": "/data/traces"
    },
    {
      "key": "MAX_OLD_SPACE_SIZE",
      "service": "Camofox",
      "description": "Node heap limit in MB for the API server. The browser is a separate process and is not bounded by this; raise it only if you see the server itself running out of heap on large page snapshots.",
      "secret": false,
      "strategy": "default",
      "default": "192"
    },
    {
      "key": "CAMOFOX_COOKIES_DIR",
      "service": "Camofox",
      "description": "Imported Netscape cookie files. On the volume so they are not lost on redeploy.",
      "secret": false,
      "strategy": "default",
      "default": "/data/cookies"
    },
    {
      "key": "CAMOFOX_INTERACTIVE",
      "service": "Camofox",
      "description": "Remote desktop / noVNC access to the browser. Kept off: on a public domain it would be a second way in. Values: off, desktop, novnc, auto.",
      "secret": false,
      "strategy": "default",
      "default": "off"
    },
    {
      "key": "CAMOFOX_PROFILE_DIR",
      "service": "Camofox",
      "description": "Per-user browser profiles (cookies + localStorage + IndexedDB) on the volume. This is what makes a logged-in session survive a redeploy.",
      "secret": false,
      "strategy": "default",
      "default": "/data/profiles"
    },
    {
      "key": "CAMOFOX_UPLOADS_DIR",
      "service": "Camofox",
      "description": "Files available to the browser's file-upload endpoint. On the volume.",
      "secret": false,
      "strategy": "default",
      "default": "/data/uploads"
    },
    {
      "key": "BROWSER_IDLE_TIMEOUT_MS",
      "service": "Camofox",
      "description": "Close the browser after this long with no sessions. This is the main cost control: an idle deployment drops from roughly 900 MB to under 200 MB. Set higher to trade money for a warm first request.",
      "secret": false,
      "strategy": "default",
      "default": "300000"
    },
    {
      "key": "CAMOFOX_CRASH_REPORT_ENABLED",
      "service": "Camofox",
      "description": "Upstream ships anonymized crash/hang telemetry ON, and it files reports as public GitHub issues on jo-inc/camofox-browser. Turned off here. Set to true to help the project, or point CAMOFOX_CRASH_REPORT_URL at your own endpoint.",
      "secret": false,
      "strategy": "default",
      "default": "false"
    }
  ],
  "deploy": {
    "mcp": {
      "server": "railway",
      "tool": "deploy_template",
      "args": {
        "template_code": "camofox-stealth-browser"
      }
    },
    "cli": "railway deploy --template camofox-stealth-browser",
    "api": {
      "method": "POST",
      "path": "/graphql/v2",
      "body": {
        "query": "mutation templateDeploy($input: TemplateDeployV2Input!) { templateDeployV2(input: $input) { projectId workflowId } }",
        "variables": {
          "input": {
            "templateId": "f7a35f85-fedf-417d-ad04-1f4a1caf2685",
            "serializedConfig": {
              "buckets": {},
              "services": {
                "ffefddf9-411c-48b4-b848-ff4aab472bc7": {
                  "icon": "https://cdn.jsdelivr.net/gh/jo-inc/camofox-browser@v1.14.0/fox.png",
                  "name": "Camofox",
                  "deploy": {
                    "startCommand": null,
                    "healthcheckPath": null,
                    "restartPolicyType": "ON_FAILURE",
                    "restartPolicyMaxRetries": 10
                  },
                  "source": {
                    "image": "ghcr.io/jo-inc/camofox-browser:1.14.0"
                  },
                  "variables": {
                    "PORT": {
                      "isOptional": false,
                      "description": "The port the server listens on. The image bakes CAMOFOX_PORT=9377 and prefers it over Railway's injected PORT, so this must stay 9377 or the platform routes traffic to a port nothing is listening on.",
                      "defaultValue": "9377"
                    },
                    "CAMOFOX_API_KEY": {
                      "isOptional": false,
                      "description": "Gates cookie and auth-session import (POST /sessions/:userId/cookies), which is how you hand the browser a logged-in session. Separate from the access key so you can share it with a narrower caller.",
                      "defaultValue": "{{CAMOFOX_API_KEY}}"
                    },
                    "CAMOFOX_ADMIN_KEY": {
                      "isOptional": false,
                      "description": "Gates POST /stop, which shuts the browser down. Kept separate so an operator can stop the browser without holding the access key.",
                      "defaultValue": "{{CAMOFOX_ADMIN_KEY}}"
                    },
                    "CAMOFOX_ACCESS_KEY": {
                      "isOptional": false,
                      "description": "The master key. Every route except /health requires 'Authorization: Bearer <this>'. Without it the browser API would be open to anyone who finds the URL, including /evaluate, which runs arbitrary JavaScript. Do not clear it.",
                      "defaultValue": "{{CAMOFOX_ACCESS_KEY}}"
                    },
                    "CAMOFOX_TRACES_DIR": {
                      "isOptional": false,
                      "description": "Playwright traces, when a session is created with trace enabled. Capped at 50 MB and 24 hours by default.",
                      "defaultValue": "/data/traces"
                    },
                    "MAX_OLD_SPACE_SIZE": {
                      "isOptional": false,
                      "description": "Node heap limit in MB for the API server. The browser is a separate process and is not bounded by this; raise it only if you see the server itself running out of heap on large page snapshots.",
                      "defaultValue": "192"
                    },
                    "CAMOFOX_COOKIES_DIR": {
                      "isOptional": false,
                      "description": "Imported Netscape cookie files. On the volume so they are not lost on redeploy.",
                      "defaultValue": "/data/cookies"
                    },
                    "CAMOFOX_INTERACTIVE": {
                      "isOptional": false,
                      "description": "Remote desktop / noVNC access to the browser. Kept off: on a public domain it would be a second way in. Values: off, desktop, novnc, auto.",
                      "defaultValue": "off"
                    },
                    "CAMOFOX_PROFILE_DIR": {
                      "isOptional": false,
                      "description": "Per-user browser profiles (cookies + localStorage + IndexedDB) on the volume. This is what makes a logged-in session survive a redeploy.",
                      "defaultValue": "/data/profiles"
                    },
                    "CAMOFOX_UPLOADS_DIR": {
                      "isOptional": false,
                      "description": "Files available to the browser's file-upload endpoint. On the volume.",
                      "defaultValue": "/data/uploads"
                    },
                    "BROWSER_IDLE_TIMEOUT_MS": {
                      "isOptional": false,
                      "description": "Close the browser after this long with no sessions. This is the main cost control: an idle deployment drops from roughly 900 MB to under 200 MB. Set higher to trade money for a warm first request.",
                      "defaultValue": "300000"
                    },
                    "CAMOFOX_CRASH_REPORT_ENABLED": {
                      "isOptional": false,
                      "description": "Upstream ships anonymized crash/hang telemetry ON, and it files reports as public GitHub issues on jo-inc/camofox-browser. Turned off here. Set to true to help the project, or point CAMOFOX_CRASH_REPORT_URL at your own endpoint.",
                      "defaultValue": "false"
                    }
                  },
                  "networking": {
                    "serviceDomains": {
                      "<hasDomain>:9377": {
                        "port": 9377
                      }
                    }
                  },
                  "volumeMounts": {
                    "ffefddf9-411c-48b4-b848-ff4aab472bc7": {
                      "mountPath": "/data"
                    }
                  }
                }
              }
            }
          }
        }
      }
    }
  },
  "post_deploy": {},
  "resources": {
    "expected_services": 1,
    "needs_volume": true
  },
  "generated_at": "2026-10-06T04:14:42.626Z",
  "generator_version": "0.1.0",
  "status": "validated",
  "validated_at": "2026-10-05T05:15:46.609Z",
  "success_rate_30d": 1,
  "validation": {
    "last_run_id": "run_717aaf01bbc6475e9496",
    "checks": [
      {
        "name": "workflow_completed",
        "passed": true
      },
      {
        "name": "all_services_deployed",
        "passed": true
      },
      {
        "name": "stays_up",
        "passed": true
      }
    ],
    "typical_ready_seconds": 79,
    "typical_build_seconds": 0,
    "typical_start_seconds": 31,
    "slowest_service": "Camofox"
  }
}
