playwright

Warn

Audited by Socket on Jul 30, 2026

1 alert found:

Anomaly
AnomalyLOW
vendor/references/running-code.md

No definitive malware or explicit exfiltration behavior is shown in the provided fragment. However, the module performs sensitive automation: it hardcodes credentials, executes an authenticated login, persists session/auth state to auth.json, and scrapes DOM text then returns it to the caller. These patterns are commonly used for legitimate testing but are also frequently associated with credential/session harvesting or unauthorized scraping when combined with additional logic not shown here (e.g., uploading auth.json or transmitting scraped data). Treat this as high sensitivity and verify the surrounding package context and downstream handling of auth.json and returned data.

Confidence: 45%Severity: 56%
Audit Metadata
Analyzed At
Jul 30, 2026, 07:56 PM
Package URL
pkg:socket/skills-sh/melodic-software%2Fclaude-code-plugins%2Fplaywright%2F@da3c72d6f9850967311e34abe0efd5c96b22aaf970395b4faadf2c5dc015a707
Security Audit — socket — playwright