paw-mkt-sales
Pass
Audited by Gen Agent Trust Hub on May 20, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: Fetches and installs the
agent-browserutility from Vercel Labs' official GitHub repository. - [COMMAND_EXECUTION]: Executes local shell and batch scripts (
tool-discovery.sh,chrome-profiles.sh) for environment setup and browser profile management. - [PROMPT_INJECTION]: The skill possesses an indirect prompt injection surface as it ingests and processes untrusted content from external websites (competitor pages, G2 reviews, and LinkedIn) during its research phase.
- [DATA_EXFILTRATION]: Manages browser session states and authentication tokens by saving them to local files (
my-auth.json). While the skill provides explicit instructions to secure these files using.gitignore, the local storage of plaintext session tokens represents a data exposure risk factor.
Audit Metadata