browser-use-to-stagehand

Pass

Audited by Gen Agent Trust Hub on Jul 19, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is designed as a developer tool for migrating automation scripts. The analysis found no evidence of malicious intent, prompt injection, or data exfiltration attempts.
  • [CREDENTIALS_UNSAFE]: The documentation and code examples consistently advocate for the use of environment variables and ".env" files to manage API keys and other secrets, effectively discouraging the unsafe practice of hardcoding credentials.
  • [EXTERNAL_DOWNLOADS]: The skill references several external libraries in its templates, such as "@browserbasehq/stagehand" and "zod". These are either vendor-owned or well-known, established packages within the Node.js ecosystem.
  • [COMMAND_EXECUTION]: The skill uses shell commands for routine development tasks like dependency installation and script execution. These operations are within the scope of its stated purpose and do not pose a security risk.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 19, 2026, 05:54 AM
Security Audit — agent-trust-hub — browser-use-to-stagehand