ecommerce-storefront-scraper
Warn
Audited by Socket on Jul 20, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the core storefront-scraping purpose is coherent, but the skill expands trust by auto-installing a separate BrowserAct skill/CLI without separate approval and delegates browsing to an external runtime that may access browser session state. Provenance appears same-org and registry-backed, so this is not confirmed malware, but it is a medium-risk skill with transitive-install and browser-session exposure concerns.
Confidence: 84%Severity: 63%
Audit Metadata