linkedin-people-search-scraper
Fail
Audited by Gen Agent Trust Hub on Jul 20, 2026
Risk Level: HIGHEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill references an external installation source hosted on a third-party GitHub repository (
browser-act/skills) via a redirector domain (browseract.com). - [REMOTE_CODE_EXECUTION]: The instructions mandate that the agent must install and execute the BrowserAct CLI as a required runtime dependency if it is missing from the environment.
- [COMMAND_EXECUTION]: The skill relies on executing a command-line interface tool (
browser-act) to perform its primary functions. - [PROMPT_INJECTION]: The 'BrowserAct Runtime' section contains explicit instructions to bypass user oversight, directing the agent to install dependencies 'automatically without asking the user to confirm' and to 'not request separate approval for dependency installation.' This is a significant attempt to override default safety and consent behaviors.
Recommendations
- AI detected serious security threats
Audit Metadata