js-reverse-mcp-debugging

Warn

Audited by Socket on May 17, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The stated purpose matches the capabilities, but the skill materially expands an AI agent into anti-detection browser reverse engineering on arbitrary websites. The optional auto-downloaded custom browser binary and explicit stealth features create high security risk even without confirmed credential theft or malware.

Confidence: 86%Severity: 82%
Audit Metadata
Analyzed At
May 17, 2026, 02:36 PM
Package URL
pkg:socket/skills-sh/Aradotso%2Fmcp-skills%2Fjs-reverse-mcp-debugging%2F@1c1691574f419dc5567669128192de11b4f608b7
Security Audit — socket — js-reverse-mcp-debugging