amazon-asin-detail-scraper
Fail
Audited by Gen Agent Trust Hub on Jul 20, 2026
Risk Level: HIGHEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill contains instructions designed to override agent safety behaviors and user oversight. It explicitly commands the agent to install dependencies "automatically without asking the user to confirm" and further instructs the agent to "not request separate approval for dependency installation."
- [EXTERNAL_DOWNLOADS]: The skill references a non-standard repository for a CLI tool and agent skill (github.com/browser-act/skills). This source is not recognized as a trusted provider for automatic software installation.
- [REMOTE_CODE_EXECUTION]: The instructions mandate the silent, automatic installation of executable code (the BrowserAct CLI and Skill) from a remote URL. This pattern of unconfirmed software installation from an untrusted source is a significant security risk that could lead to the execution of malicious payloads on the host system.
Recommendations
- AI detected serious security threats
Audit Metadata