web-browser

Warn

Audited by Socket on Apr 14, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is broadly consistent with its stated purpose of real-browser automation, but it grants high-impact control over the user's actual Chrome session, including authenticated browsing, uploads, arbitrary DOM JS, and optional third-party content routing through Jina. Official package-manager installs for Node reduce supply-chain concern, yet the local proxy/check script remains unverifed from the provided evidence. Overall this is a high-capability but purpose-aligned skill with meaningful security risk, not confirmed malware.

Confidence: 84%Severity: 72%
Audit Metadata
Analyzed At
Apr 14, 2026, 11:35 AM
Package URL
pkg:socket/skills-sh/43COLLEGE%2F43-Agent-skills%2Fweb-browser%2F@d6231b49f2db16db2fd0b332567c5de321bd3b2b