agent-browser

Warn

Audited by Socket on Mar 15, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

The skill is mostly aligned with its stated browser-automation purpose, but it is high-impact because it combines untrusted web browsing with the ability to act on pages, persist auth state, inspect cookies/storage, upload files, and run JS. This looks more like a powerful automation capability than malware, but it is risky and should be treated as suspicious/medium-high risk in autonomous agent settings.

Confidence: 85%Severity: 68%
Audit Metadata
Analyzed At
Mar 15, 2026, 12:43 PM
Package URL
pkg:socket/skills-sh/qwibitai%2Fnanoclaw%2Fagent-browser%2F@f123febd2892988390a1e4a42511a1dcddc6509c