paw-mkt-sales

Pass

Audited by Gen Agent Trust Hub on May 20, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Fetches and installs the agent-browser utility from Vercel Labs' official GitHub repository.
  • [COMMAND_EXECUTION]: Executes local shell and batch scripts (tool-discovery.sh, chrome-profiles.sh) for environment setup and browser profile management.
  • [PROMPT_INJECTION]: The skill possesses an indirect prompt injection surface as it ingests and processes untrusted content from external websites (competitor pages, G2 reviews, and LinkedIn) during its research phase.
  • [DATA_EXFILTRATION]: Manages browser session states and authentication tokens by saving them to local files (my-auth.json). While the skill provides explicit instructions to secure these files using .gitignore, the local storage of plaintext session tokens represents a data exposure risk factor.
Audit Metadata
Risk Level
SAFE
Analyzed
May 20, 2026, 10:38 AM
Security Audit — agent-trust-hub — paw-mkt-sales