ecommerce-product-image-reference-scraper
Warn
Audited by Socket on Jul 20, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The core scraping purpose is coherent, and the BrowserAct CLI appears to use a plausibly official same-org distribution path, so this is not confirmed malware. Risk comes from automatic dependency installation without confirmation, transitive installation of another skill, and delegated live browser behavior that broadens the skill’s effective footprint beyond simple image-reference extraction.
Confidence: 86%Severity: 66%
Audit Metadata