ultimate-browsing

Warn

Audited by Socket on Jun 23, 2026

4 alerts found:

Securityx3Anomaly
SecurityMEDIUM
SKILL.md
SecurityMEDIUM
references/insane-search/tls-impersonate.md
AnomalyLOW
references/insane-search/playwright.md

No direct malware (e.g., backdoor, credential theft, command execution, or exfiltration) is evidenced in the provided fragment. However, the workflow is explicitly tailored to bypass WAF/bot-management detection by forcing a real Chrome TLS stack (channel:'chrome'), using headful mode, and applying stealth/anti-detection tooling, with additional capability to discover API endpoints via network inspection. This makes the module’s security posture meaningfully elevated and potentially policy-violating in unauthorized contexts, even if malware likelihood remains low.

Confidence: 56%Severity: 62%
SecurityMEDIUM
engine/waf_profiles.yaml
Audit Metadata
Analyzed At
Jun 23, 2026, 11:38 AM
Package URL
pkg:socket/skills-sh/code-yeongyu%2Flazycodex%2Fultimate-browsing%2F@1ebf7fa309353ab6794c3221aff5df31917a0082c3db3926f57e50a9cf69f57b
Security Audit — socket — ultimate-browsing