browser-to-api

Pass

Audited by Gen Agent Trust Hub on May 19, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill performs offline post-processing on local trace data and does not engage in unauthorized network communication or data exfiltration.- [SAFE]: A comprehensive redaction system is implemented in scripts/lib/redact.mjs that automatically identifies and masks sensitive headers (Authorization, Cookies, API Keys), JSON keys (passwords, secrets), and data patterns (JWTs, emails, phone numbers) before they are included in generated specs or reports.- [SAFE]: The project has zero external dependencies and does not perform any remote package installations, significantly reducing the risk of supply chain attacks.- [SAFE]: No patterns of prompt injection, obfuscation, privilege escalation, or persistence mechanisms were detected across the script logic or documentation.
Audit Metadata
Risk Level
SAFE
Analyzed
May 19, 2026, 02:59 AM
Security Audit — agent-trust-hub — browser-to-api