agent-browser

Warn

Audited by Socket on Sep 17, 2026

1 alert found:

Anomaly
AnomalyLOW
references/commands.md

No direct evidence of malware is present in the provided fragment because it is documentation rather than executable code. However, it describes a high-privilege browser automation interface that can execute arbitrary in-page JavaScript (including via base64/stdin), modify and persist sensitive browser auth/state, intercept/mock network traffic, load arbitrary extensions, and weaken transport security. The security concern is misuse/abuse potential and risk escalation in compromised or untrusted automation contexts.

Confidence: 62%Severity: 60%
Audit Metadata
Analyzed At
Sep 17, 2026, 07:32 AM
Package URL
pkg:socket/skills-sh/wshaddix%2Fdotnet-skills%2Fagent-browser%2F@58e5997a3d6fbb325b1c57851a37b01bb6405a0219a91939eeac62afb7df8101
Security Audit — socket — agent-browser