headless-fallback

Pass

Audited by Gen Agent Trust Hub on Aug 22, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a configuration guide and documentation for the crawlberg utility. It does not contain any executable scripts, binary files, or installation commands.
  • [COMMAND_EXECUTION]: All command-line examples (e.g., crawlberg scrape) are legitimate usage demonstrations of the primary tool and do not involve system-level privilege escalation or unauthorized command execution.
  • [DATA_EXFILTRATION]: Configuration options like --browser-endpoint allow connection to remote browser instances (CDP). These are standard features for browser automation and are documented here as legitimate tool parameters rather than exfiltration vectors.
  • [PROMPT_INJECTION]: No attempts to override agent behavior, bypass safety filters, or extract system prompts were found in the instructions or metadata.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 22, 2026, 10:22 PM
Security Audit — agent-trust-hub — headless-fallback