pinterest-trend-scraper

Warn

Audited by Gen Agent Trust Hub on Jul 20, 2026

Risk Level: MEDIUMEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The instructions include explicit directives to bypass standard safety and consent protocols. The skill commands the agent to "install the missing dependency automatically without asking the user to confirm" and further specifies "do not request separate approval for dependency installation."
  • [EXTERNAL_DOWNLOADS]: The skill directs the agent to fetch and install software from an external domain (www.browseract.com) and a GitHub repository (github.com/browser-act/skills). These sources are not categorized as trusted or well-known services.
  • [REMOTE_CODE_EXECUTION]: By mandating the automatic installation and subsequent execution of an external CLI tool at runtime without user oversight, the skill creates a mechanism for unverified remote code execution.
  • [DATA_EXFILTRATION]: The skill mentions managing sensitive session data such as cookies and account information. When combined with the instruction to silently install external software, this creates a risk surface for potential data exfiltration.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Jul 20, 2026, 04:41 AM
Security Audit — agent-trust-hub — pinterest-trend-scraper