playwright-skill
Pass
Audited by Gen Agent Trust Hub on Jun 13, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides extensive documentation for Playwright browser automation, including E2E, API, and component testing patterns. All code examples are educational and adhere to industry standards for quality and security.
- [SAFE]: All external resource references (URLs and domains) point to well-known and trusted services such as Google, GitHub, Stripe, Intercom, and official Playwright documentation.
- [SAFE]: Security-themed examples, such as XSS and SQL injection payloads in the 'core/security-testing.md' file, are explicitly labeled as data for testing an application's defenses and are not instructions or payloads targeting the agent.
- [SAFE]: The skill uses placeholder credentials (e.g., 'password123', 'admin-pass') and environment variable patterns for secret management, following established security best practices.
- [SAFE]: Automation scripts for CI/CD platforms (GitHub Actions, GitLab CI, etc.) are properly structured and do not contain any arbitrary command execution or exfiltration patterns.
Audit Metadata