ecommerce-category-listing-scraper

Warn

Audited by Socket on Jul 20, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core scraping purpose is coherent, and the BrowserAct dependency appears to be an official same-org tool installed via documented PyPI/uv paths rather than an obviously malicious payload. However, the skill expands trust by auto-installing a separate skill/runtime without user confirmation and may expose browser cookies or authenticated session context to third-party runtime code. This is a proportionate but medium-risk scraping skill, not confirmed malware.

Confidence: 84%Severity: 62%
Audit Metadata
Analyzed At
Jul 20, 2026, 04:16 AM
Package URL
pkg:socket/skills-sh/sam6dvpte34%2Fecommerce-skill%2Fecommerce-category-listing-scraper%2F@6cad88a60f977fd3d01a0c6b8fea536e4ed32cee6b7b5f8b643728a30c6d0b9e
Security Audit — socket — ecommerce-category-listing-scraper