playwright-auth
Pass
Audited by Gen Agent Trust Hub on Aug 2, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill outlines standardized authentication patterns for end-to-end testing, emphasizing maintainability and security.
- [SAFE]: Instructions for credential handling recommend using environment variables and .env files, with explicit warnings against committing real secrets to version control, which aligns with standard security practices.
- [SAFE]: Recommended session management involves isolating browser contexts and ensuring that storage state files located in the .auth/ directory are excluded from version control via .gitignore.
- [SAFE]: Code samples utilize deterministic placeholders for development, which prevents the accidental exposure of sensitive credentials.
- [PROMPT_INJECTION]: The skill identifies ingestion points for processing external data such as credentials and URLs within automated test scripts. Ingestion points: Credentials and Login URLs defined as inputs in SKILL.md. Boundary markers: No specific delimiters or warnings for embedded instructions are provided in the implementation examples. Capability inventory: The Bash tool is authorized for use within this skill context according to the frontmatter in SKILL.md. Sanitization: No sanitization or validation of input variables is described in the provided logic.
Audit Metadata