meticulous-cli-record
Warn
Audited by Gen Agent Trust Hub on Mar 16, 2026
Risk Level: MEDIUMCOMMAND_EXECUTIONDATA_EXFILTRATION
Full Analysis
- [COMMAND_EXECUTION]: Executes the
meticulousCLI tool which launches a Chromium browser with a script injected to record user interactions and network traffic. - [DATA_EXFILTRATION]: The
record logincommand is designed to capture and upload sensitive credentials, including usernames, passwords, and authentication tokens, to the Meticulous cloud platform. - [DATA_EXFILTRATION]: The skill captures sensitive session data such as HTTP-only cookies and bypasses Content Security Policy (CSP) to intercept authentication requests, which are then transmitted to an external service at
app.meticulous.ai.
Audit Metadata