oxylabs-unblocking-browser
Audited by Socket on Feb 18, 2026
1 alert found:
Security[Skill Scanner] Backtick command substitution detected All findings: [HIGH] command_injection: Backtick command substitution detected (CI003) [AITech 9.1.4] [HIGH] command_injection: Backtick command substitution detected (CI003) [AITech 9.1.4] This skill/documentation describes a legitimate remote browser service usage pattern. There is no evidence in the provided text of obfuscated or malicious code, backdoors, or credential harvesting beyond the expected authentication to the Oxylabs service. The primary security consideration is that browsing, page content, and any secrets present during automated sessions are handled by the third-party provider (Oxylabs), so users must trust the provider and avoid exposing highly sensitive data via remote sessions. Overall: benign but with an expected third-party data-exposure privacy risk.