browser-login

Warn

Audited by Socket on May 4, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s purpose and capabilities mostly align, but it handles highly sensitive session cookies, extracts them via browser instrumentation, and stores reuse handles through an unpinned external CLI. This is proportionate to a browser-login skill, yet the combination of session capture, persistence, and mutable runtime dependency makes it medium-to-high security risk rather than benign.

Confidence: 82%Severity: 66%
Audit Metadata
Analyzed At
May 4, 2026, 09:15 PM
Package URL
pkg:socket/skills-sh/ruvnet%2Fruflo%2Fbrowser-login%2F@46b231e0780ed7db005f3078f2b55f30c571a00c
Security Audit — socket — browser-login