browser-automation

Warn

Audited by Socket on Apr 3, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The core capabilities broadly match the stated browser-automation purpose, but the anti-detection emphasis and code generation from untrusted web content raise misuse and prompt-injection risk. Install trust is only moderate because publisher provenance appears to be a personal GitHub repo with unpinned registry/ZIP distribution paths, though the provided skill itself shows no credential harvesting, covert behavior, or third-party credential routing.

Confidence: 82%Severity: 56%
Audit Metadata
Analyzed At
Apr 3, 2026, 11:13 AM
Package URL
pkg:socket/skills-sh/borghei%2Fclaude-skills%2Fbrowser-automation%2F@a3912aac7166aa19bed92be940b625637d12a3fb