Browser Automation

Warn

Audited by Socket on Jun 3, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s stated purpose matches its browser-automation capabilities, and there is no clear evidence of credential theft or covert exfiltration. However, it relies on an external MCP server, enables arbitrary site interaction, and exposes the agent to indirect prompt injection from untrusted web content, making it medium risk rather than benign.

Confidence: 84%Severity: 58%
Audit Metadata
Analyzed At
Jun 3, 2026, 02:52 PM
Package URL
pkg:socket/skills-sh/claude-office-skills%2Fskills-hub%2Fbrowser-automation%2F@093efef521d89ec9720038361e6e5429c85748bb
Security Audit — socket — Browser Automation