browser-use
Warn
Audited by Socket on Mar 26, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the core browser-automation purpose is coherent and the extension provenance appears legitimate, but the skill inserts an undocumented local relay/wrapper with a non-standard token variable while reusing the user's authenticated browser session. The capability set is high-impact and data/token flow is not fully verifiable from the supplied skill.
Confidence: 81%Severity: 66%
Audit Metadata