playwright-skill

Pass

Audited by Gen Agent Trust Hub on Jun 13, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides extensive documentation for Playwright browser automation, including E2E, API, and component testing patterns. All code examples are educational and adhere to industry standards for quality and security.
  • [SAFE]: All external resource references (URLs and domains) point to well-known and trusted services such as Google, GitHub, Stripe, Intercom, and official Playwright documentation.
  • [SAFE]: Security-themed examples, such as XSS and SQL injection payloads in the 'core/security-testing.md' file, are explicitly labeled as data for testing an application's defenses and are not instructions or payloads targeting the agent.
  • [SAFE]: The skill uses placeholder credentials (e.g., 'password123', 'admin-pass') and environment variable patterns for secret management, following established security best practices.
  • [SAFE]: Automation scripts for CI/CD platforms (GitHub Actions, GitLab CI, etc.) are properly structured and do not contain any arbitrary command execution or exfiltration patterns.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 13, 2026, 02:07 AM
Security Audit — agent-trust-hub — playwright-skill