playwright-cli

Pass

Audited by Gen Agent Trust Hub on Sep 19, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill guides the installation of official Microsoft packages including @playwright/test via npm and playwright via pip, and uses the playwright install command to fetch browser binaries.
  • [INDIRECT_PROMPT_INJECTION]: The skill facilitates the ingestion of untrusted data by interacting with external websites via commands like playwright open, screenshot, and codegen as seen in SKILL.md. Capability inventory includes the ability to write files (screenshots, PDFs) and execute tests. There are no specified boundary markers or sanitization procedures for the data retrieved from external URLs.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 19, 2026, 11:31 PM
Security Audit — agent-trust-hub — playwright-cli