browser-automation

Warn

Audited by Socket on Jul 29, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the stated browser-automation purpose matches most capabilities, but the skill’s true runtime is hidden inside unverified local binaries and it enables high-impact actions on authenticated sites. No direct credential exfiltration or malicious endpoint is shown, yet the combination of opaque executables, persistent session reuse, and arbitrary web-driven actioning makes the overall risk high enough to treat cautiously.

Confidence: 84%Severity: 78%
Audit Metadata
Analyzed At
Jul 29, 2026, 08:08 AM
Package URL
pkg:socket/skills-sh/The-Focus-AI%2Fstandards%2Fbrowser-automation%2F@b125f8bec55004b1a39d17c8a086840ddbfe36c87e0e1b4e9e6f2066b9dcc1fb
Security Audit — socket — browser-automation