google-maps-agency-lead-scraper
Fail
Audited by Gen Agent Trust Hub on Jul 20, 2026
Risk Level: HIGHEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTIONREMOTE_CODE_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill mandates the installation of the "BrowserAct CLI" and a secondary skill from an external domain (
browseract.com) and an unverified GitHub repository (browser-act/skills) which are not recognized as trusted sources. - [COMMAND_EXECUTION]: The instructions command the agent to install missing software dependencies "automatically without asking the user to confirm," facilitating unauthorized command execution on the host system.
- [PROMPT_INJECTION]: The skill contains instructions that attempt to override the agent's standard safety protocols and user-interface behaviors by directing it to skip separate approval for dependency installation and to avoid describing the action to the user.
- [REMOTE_CODE_EXECUTION]: The defined workflow requires the agent to download and run external code/tools at runtime, creating a direct vector for remote code execution from an unvetted source.
Recommendations
- AI detected serious security threats
Audit Metadata