headless-fallback
Pass
Audited by Gen Agent Trust Hub on Aug 22, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill serves as a configuration guide and documentation for the
crawlbergutility. It does not contain any executable scripts, binary files, or installation commands. - [COMMAND_EXECUTION]: All command-line examples (e.g.,
crawlberg scrape) are legitimate usage demonstrations of the primary tool and do not involve system-level privilege escalation or unauthorized command execution. - [DATA_EXFILTRATION]: Configuration options like
--browser-endpointallow connection to remote browser instances (CDP). These are standard features for browser automation and are documented here as legitimate tool parameters rather than exfiltration vectors. - [PROMPT_INJECTION]: No attempts to override agent behavior, bypass safety filters, or extract system prompts were found in the instructions or metadata.
Audit Metadata