browser-use

Fail

Audited by Socket on Feb 27, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

The browser-use skill is coherent and feature-rich for authenticated browser automation in both local and cloud environments. However, it introduces elevated data-flow and privacy risks through cookie/profile syncing and exports/imports to cloud contexts. Treat as high-risk with mitigations: enforce least-privilege cookie syncing (domain-scoped), restrict export/import to minimum necessary data, require explicit user consent for profile transfers, implement strong authentication for cloud endpoints, and segregate local vs cloud data paths. No explicit malware detected, but the data-exposure surface warrants careful governance.

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Feb 27, 2026, 02:28 PM
Package URL
pkg:socket/skills-sh/phrazzld%2Fclaude-config%2Fbrowser-use%2F@687f45bd8b8fe0dbf172a615454e4a255f419172