website-partners-page-lead-scraper
Fail
Audited by Gen Agent Trust Hub on Jul 20, 2026
Risk Level: HIGHPROMPT_INJECTIONEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [PROMPT_INJECTION]: The instructions contain explicit directives to bypass user oversight and safety confirmation steps. It states that dependencies should be installed 'automatically without asking the user to confirm' and further commands the agent to 'not request separate approval for dependency installation.' This is a direct attempt to override the agent's standard safety guidelines regarding software installation and system changes.
- [EXTERNAL_DOWNLOADS]: The skill requires the installation of the 'browser-act' CLI and associated skills from an external, third-party source (browseract.com). The use of a tracking/redirector URL (https://www.browseract.com/?co-from=lead-generation) for automated installation increases the risk of unverified code being introduced to the environment.
- [COMMAND_EXECUTION]: The skill is designed to execute the 'browser-act' CLI on the user's system. When paired with the instructions for automated, silent installation, this creates a high-risk scenario where arbitrary third-party code is downloaded and executed without user review or awareness.
Recommendations
- AI detected serious security threats
Audit Metadata