flipkart-category-listing-scraper

Warn

Audited by Gen Agent Trust Hub on Jul 20, 2026

Risk Level: MEDIUMEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill directs the agent to download the browser-act CLI and its associated skill from an external domain (www.browseract.com) and a GitHub repository if they are not found on the system.
  • [REMOTE_CODE_EXECUTION]: The instructions explicitly mandate that the agent perform the installation of missing dependencies 'automatically without asking the user to confirm' and 'do not request separate approval for dependency installation.' This is a directive to bypass user oversight and security prompts when executing installation scripts from the internet.
  • [COMMAND_EXECUTION]: The skill relies on the execution of a system-level CLI tool (browser-act) to perform its primary functions, including browser interactions and data collection.
  • [PROMPT_INJECTION]: The skill is vulnerable to indirect prompt injection because it ingests untrusted data from Flipkart product listings. It lacks boundary markers (like XML tags or delimiters) or explicit instructions to ignore embedded commands within the scraped data, which could lead to the agent following malicious instructions found in product titles or descriptions.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Jul 20, 2026, 04:19 AM
Security Audit — agent-trust-hub — flipkart-category-listing-scraper