phoenix-pr-screenshot

Warn

Audited by Socket on Apr 12, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the workflow is mostly coherent for PR screenshot automation, and data goes to official GitHub/GCS services, but the skill has meaningful operational risk because it combines local code execution, browser automation, cloud upload, and PR editing, while relying on a third-party `agent-browser` CLI not published by the same org.

Confidence: 83%Severity: 52%
Audit Metadata
Analyzed At
Apr 12, 2026, 01:36 AM
Package URL
pkg:socket/skills-sh/arize-ai%2Fphoenix%2Fphoenix-pr-screenshot%2F@013e9e4a72fb0665fad09783df23c02bdbb9768c