playwright-cli
Pass
Audited by Gen Agent Trust Hub on Jun 16, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONDATA_EXFILTRATIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: Executes playwright-cli and npx commands to perform browser-based tasks and run automated tests.\n- [EXTERNAL_DOWNLOADS]: Recommends installing the @playwright/cli package from the official NPM registry, which is a well-known and trusted technology service.\n- [REMOTE_CODE_EXECUTION]: Features a run-code command that executes arbitrary JavaScript strings within the browser context to facilitate complex automation workflows.\n- [DATA_EXFILTRATION]: Provides tools to list, retrieve, and save browser session data including cookies and localStorage to local state files such as auth.json.\n- [PROMPT_INJECTION]: The skill possesses an indirect prompt injection surface. Ingestion points: goto and snapshot commands (SKILL.md). Boundary markers: Absent. Capability inventory: run-code and eval commands (references/running-code.md, references/element-attributes.md), and file-write via state-save. Sanitization: Absent.
Audit Metadata