x9-browser-session
Warn
Audited by Socket on Sep 5, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill’s purpose and most capabilities are coherent for authenticated browser automation, and its official chrome-devtools-mcp setup is broadly consistent. The main risk is disproportionate trust in an unverified fallback CLI (agent-browser via agent-edge) that attaches to a logged-in browser profile and can access sensitive session data; combined with authenticated browser control, this raises overall security risk even without clear malicious intent.
Confidence: 85%Severity: 76%
Audit Metadata