web-recap

Fail

Audited by Snyk on Jul 29, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E005: Suspicious download URL detected in skill instructions.

  • Suspicious download URL detected (high risk: 0.70). The direct GitHub release download is a raw executable distribution (web-recap-darwin-arm64) which can be used to deliver malware without review; the repository clone link is less risky since it provides source code to build from but the prebuilt binary is the main concern.

CRITICAL E006: Malicious code pattern detected in skill scripts.

  • Malicious code pattern detected (high risk: 1.00). This README documents a tool whose explicit purpose is to extract local browser history (sensitive personal data) and instructs downloading/executing a release binary — functionality that enables data exfiltration and carries supply-chain risk.

Issues (2)

E005
CRITICAL

Suspicious download URL detected in skill instructions.

E006
CRITICAL

Malicious code pattern detected in skill scripts.

Audit Metadata
Risk Level
CRITICAL
Analyzed
Jul 29, 2026, 03:30 AM
Issues
2
Security Audit — snyk — web-recap