web-access

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill's browser automation purpose is plausible, but its footprint is broad. The main concerns are third-party routing through Jina for page retrieval, operation inside the user's real logged-in Chrome session, and concurrent sub-agent browsing with strong action capability. There is no clear evidence of credential theft or malicious payloads, but the data flows and scope are high enough to treat it as medium-high security risk.

Confidence: 83%Severity: 68%
Audit Metadata
Analyzed At
Mar 18, 2026, 10:36 PM
Package URL
pkg:socket/skills-sh/eze-is%2Feze-skills%2Fweb-access%2F@43ca8e1cdac4731ca9037670cb93db96bb1d97ad
Security Audit — socket — web-access