ego-browser

Warn

Audited by Socket on Sep 4, 2026

2 alerts found:

SecurityAnomaly
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill's capabilities broadly match its stated browser-automation purpose, and its sensitive-action handoff policy reduces autonomy risk. But its actual footprint is high-risk: it routes agent actions over SSH into the user's logged-in browser on a personal Mac, reaches banking/root/admin surfaces, and depends on a largely unverifiable closed-source binary outside normal registries. This is not confirmed malware, but it is a high-trust skill with substantial security exposure.

Confidence: 87%Severity: 82%
AnomalyLOW
assets/upstream-install.sh

No explicit backdoor/persistence/exfiltration logic is evident in this installer/launcher script itself. However, it creates a significant macOS supply-chain risk: it downloads and mounts a remote DMG (and possibly runs an included .pkg) without verifying integrity or authenticity, then removes com.apple.quarantine and performs privileged installation into /Applications before launching. If the CDN content (or transport path) were tampered with, this script would directly deliver and execute the attacker’s payload with elevated installation impact.

Confidence: 74%Severity: 62%
Audit Metadata
Analyzed At
Sep 4, 2026, 06:57 AM
Package URL
pkg:socket/skills-sh/delorenj%2Fskills%2Fego-browser%2F@2a95df3ea0dcb03a7f044ca548fc8545fcb954c1eced704fceefdf0e07e25cef
Security Audit — socket — ego-browser