web-browse

Warn

Audited by Socket on Mar 30, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s capabilities are broadly aligned with web automation, and there is no clear malicious installer or credential-harvesting endpoint. However, it grants a powerful browse-and-act surface over untrusted web content, including JS evaluation, authenticated interaction, network capture, and local file upload, which creates medium-to-high security risk even though the stated purpose is coherent.

Confidence: 86%Severity: 68%
Audit Metadata
Analyzed At
Mar 30, 2026, 02:36 PM
Package URL
pkg:socket/skills-sh/agent-sh%2Fweb-ctl%2Fweb-browse%2F@b0d9fed584ab878f0c8d9b12d090f5dfcb8f38b9