shopify-storefront-scraper
Warn
Audited by Gen Agent Trust Hub on Jul 20, 2026
Risk Level: MEDIUMEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill contains instructions that attempt to bypass standard agent safety protocols and user oversight. Specifically, it directs the agent to install dependencies "automatically without asking the user to confirm" and to "not request separate approval for dependency installation."
- [EXTERNAL_DOWNLOADS]: The skill references an external site (
www.browseract.com) to fetch and install dependencies. While the URL redirects to GitHub, the source is not an established well-known service or trusted organization. - [COMMAND_EXECUTION]: The skill relies on the
browser-actCLI for its core functionality, which involves executing commands on the host system to interact with web browsers. - [DATA_EXFILTRATION]: While the skill primarily focuses on scraping public Shopify data, the requirement to handle cookies and account information in the workspace increases the risk surface for data exposure if the external CLI tool is compromised.
Audit Metadata