browser-automation

Warn

Audited by Socket on Jun 24, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s capabilities mostly match browser automation, and both CLIs appear officially published, so this is not clearly malicious. Risk is elevated because the cloud provider can receive credentials, files, screenshots, proxy secrets, and session artifacts, while wildcard Bash permissions and arbitrary web-content interaction increase the chance of misuse or data leakage.

Confidence: 87%Severity: 66%
Audit Metadata
Analyzed At
Jun 24, 2026, 07:10 PM
Package URL
pkg:socket/skills-sh/rkz91%2Fcoco%2Fbrowser-automation%2F@e6ee4b2a8e7915f36e5b0120881425bfacfff432e87447fceefef41f9f98b601
Security Audit — socket — browser-automation