agent-browser

Warn

Audited by Socket on Apr 4, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s capabilities broadly match browser automation, and the referenced CLI appears to be a legitimate same-org open-source project. Risk comes from its very broad action surface: wildcard CLI access, arbitrary web browsing, page-JS execution, file writes/uploads, credential handling, and optional third-party cloud browser routing. It is not clearly malicious, but it is a high-impact automation skill that should be treated as medium risk.

Confidence: 84%Severity: 62%
Audit Metadata
Analyzed At
Apr 4, 2026, 06:28 AM
Package URL
pkg:socket/skills-sh/m4n5ter%2Fskills%2Fagent-browser%2F@1aae2632f161881ecfa2cc1fa0b6b5eabd910c46