browser-testing-with-devtools
Pass
Audited by Gen Agent Trust Hub on Jun 14, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill consists of instructional guidance without any executable scripts or complex automation code.
- [INDIRECT_PROMPT_INJECTION]: The skill specifically addresses the risk of indirect prompt injection when interacting with web content. It includes a 'Trust boundary' section that instructs the agent to treat page content and console messages as untrusted and to avoid following instructions embedded in the page. This is a positive security feature.
- [DATA_EXPOSURE]: No hardcoded credentials or access to sensitive local files were detected.
- [REMOTE_CODE_EXECUTION]: There are no patterns involving the download or execution of remote scripts or unverified packages.
Audit Metadata