browser-cdp
Warn
Audited by Socket on Sep 1, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill is internally coherent for browser/CDP automation, but its actual footprint is powerful and sensitive. The main concern is explicit extraction of browser auth tokens/cookies and arbitrary action execution in an authenticated browser session via a third-party CLI; data does not appear routed to attacker infrastructure, so this is high-impact capability rather than confirmed malware.
Confidence: 84%Severity: 62%
Audit Metadata