webapp-testing

Warn

Audited by Socket on Mar 3, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The webapp-testing skill is functionally coherent with its described purpose (Playwright-based local web app testing) and uses reasonable playbook patterns (waiting for networkidle, capturing console logs, avoiding shell=True). However, it requires broad local file/system access and explicit read/write access to agent memory files (.claude/context/memory/*). The Memory Protocol's mandatory reads and persistent writes are the highest-risk elements: they enable system-prompt extraction and persistent storage of any sensitive data discovered during tests. Additionally, installation steps that download browser binaries and the practice of starting project dev servers mean this skill will execute third-party code and perform network downloads during setup/runtime. Overall the component is useful for local testing but presents moderate-to-high supply-chain and data-leak risk in typical agent environments. Restrict this skill to trusted projects and disable or lock memory access when testing untrusted code or when agent memory contains sensitive internal prompts.

Confidence: 85%Severity: 75%
Audit Metadata
Analyzed At
Mar 3, 2026, 09:27 AM
Package URL
pkg:socket/skills-sh/oimiragieo%2Fagent-studio%2Fwebapp-testing%2F@d49c30e7c9a272ce984e5e8c6c4da1279bea4ceb