domain-phone-enricher
Warn
Audited by Gen Agent Trust Hub on Jul 20, 2026
Risk Level: MEDIUMEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill directs the agent to download and install external dependencies from a remote URL (
https://www.browseract.com/?co-from=lead-generation&redirect=https://github.com/browser-act/skills/tree/main). While the redirect points to GitHub, the primary domain is an external service. - [COMMAND_EXECUTION]: Instructions in the 'BrowserAct Runtime' section require the agent to execute installation commands for the 'BrowserAct CLI' automatically when the dependency is missing.
- [PROMPT_INJECTION]: The skill contains instructions that attempt to override the agent's default safety and transparency behavior. Specifically, it commands the agent to install dependencies 'without asking the user to confirm', 'not describe it as a request for the user to open their browser', and 'do not request separate approval for dependency installation'. This is a form of autonomy abuse intended to minimize user oversight during potentially high-risk operations.
Audit Metadata