web-access

Warn

Audited by Socket on May 6, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill's capabilities largely match its stated web-access purpose, but its footprint is high-impact. It automates the user's real Chrome with existing login state, can perform account-affecting actions, reads local browsing metadata, and consumes untrusted web content while retaining action privileges. No clear malicious exfiltration or deceptive third-party routing is shown, so this is not confirmed malware, but it is a high-risk web automation skill.

Confidence: 88%Severity: 68%
Audit Metadata
Analyzed At
May 6, 2026, 03:27 PM
Package URL
pkg:socket/skills-sh/eze-is%2Fweb-access-skill%2Fweb-access%2F@3caf8f379d63de222b0146d0cb2f5153c6717172
Security Audit — socket — web-access