sap-browser-automation

Warn

Audited by Socket on Aug 29, 2026

1 alert found:

Anomaly
AnomalyLOW
scripts/cdp-agent.mjs

This code is a high-capability CDP automation CLI for local browser control. It can execute arbitrary JavaScript in the page context (Runtime.evaluate) using user-provided expressions and can export/import authentication state (cookies + localStorage/sessionStorage), writing sensitive data to disk and injecting storage back into the browser. There is no clear evidence of external-network exfiltration or obfuscation in the snippet, but the functionality is strongly aligned with session capture/impersonation and therefore poses significant security risk if misused.

Confidence: 74%Severity: 68%
Audit Metadata
Analyzed At
Aug 29, 2026, 04:31 AM
Package URL
pkg:socket/skills-sh/secondsky%2Fsap-skills%2Fsap-browser-automation%2F@cb73ebd63bbdf02a653358c097abb869b69dfaf928a17847f3d0baff9f704b48
Security Audit — socket — sap-browser-automation