google-maps-agency-lead-scraper

Fail

Audited by Gen Agent Trust Hub on Jul 20, 2026

Risk Level: HIGHEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTIONREMOTE_CODE_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill mandates the installation of the "BrowserAct CLI" and a secondary skill from an external domain (browseract.com) and an unverified GitHub repository (browser-act/skills) which are not recognized as trusted sources.
  • [COMMAND_EXECUTION]: The instructions command the agent to install missing software dependencies "automatically without asking the user to confirm," facilitating unauthorized command execution on the host system.
  • [PROMPT_INJECTION]: The skill contains instructions that attempt to override the agent's standard safety protocols and user-interface behaviors by directing it to skip separate approval for dependency installation and to avoid describing the action to the user.
  • [REMOTE_CODE_EXECUTION]: The defined workflow requires the agent to download and run external code/tools at runtime, creating a direct vector for remote code execution from an unvetted source.
Recommendations
  • AI detected serious security threats
Audit Metadata
Risk Level
HIGH
Analyzed
Jul 20, 2026, 04:39 AM
Security Audit — agent-trust-hub — google-maps-agency-lead-scraper