browser-automation
Warn
Audited by Socket on Jun 24, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill’s capabilities mostly match browser automation, and both CLIs appear officially published, so this is not clearly malicious. Risk is elevated because the cloud provider can receive credentials, files, screenshots, proxy secrets, and session artifacts, while wildcard Bash permissions and arbitrary web-content interaction increase the chance of misuse or data leakage.
Confidence: 87%Severity: 66%
Audit Metadata