web-scraper

Fail

Audited by Socket on Feb 13, 2026

3 alerts found:

filesystemAccessMalwarenetworkAccess
filesystemAccessLOW
MalwareHIGH
SKILL.md

This skill/documentation describes a legitimate lightweight web-scraper whose declared capabilities match its purpose. There are no direct indicators of malware, hidden exfiltration, third-party proxying, or hardcoded secrets. The main security concerns are misuse risks: ignoring robots.txt, large recursive crawls that could cause excessive load or collect sensitive-but-public data, and potential implementation-level issues (not visible here) like path traversal or unbounded disk usage. On the provided information, the package appears benign for intended use but carries moderate abuse risk if misconfigured or used irresponsibly.

Confidence: 80%Severity: 35%
networkAccessMEDIUM
scripts/scrape.py
Audit Metadata
Analyzed At
Feb 13, 2026, 07:16 AM
Package URL
pkg:socket/skills-sh/agentbay-ai%2Fagentbay-skills%2Fweb-scraper%2F@ca8b65bd9ed7ff6b507e070d6c722e903ef10b55