cookie-sync

Warn

Audited by Socket on Mar 25, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally coherent, but its purpose is to export live authenticated browser cookies to a remote persistent context and then reuse them for automated browsing. That is a legitimate Browserbase workflow, yet it materially expands session theft/account misuse risk and should be treated as high-sensitivity session forwarding rather than a low-risk utility.

Confidence: 88%Severity: 76%
Audit Metadata
Analyzed At
Mar 25, 2026, 08:20 PM
Package URL
pkg:socket/skills-sh/browserbase%2Fskills%2Fcookie-sync%2F@50d494a0aad9fa3eadcd940b67cdcc084a745ddb