Playwright PDF Export Automation

Warn

Audited by Socket on Mar 29, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the stated Playwright PDF purpose is plausible, but the skill’s main action is to install a third-party skill through external registries/CLIs, creating a transitive trust risk. No obvious malicious exfiltration is described, yet the unpinned third-party skill installation and possible handling of auth cookies/AWS credentials make this medium-to-high risk.

Confidence: 84%Severity: 74%
Audit Metadata
Analyzed At
Mar 29, 2026, 03:36 AM
Package URL
pkg:socket/skills-sh/agentskillexchange%2Fskills%2Fplaywright-pdf-export-automation%2F@5ec7f9a23d26c4d022bfda2cb0e90b2764c5c0f6