saccoai-website-analysis

Warn

Audited by Socket on Mar 26, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the stated purpose matches website analysis, and the agent-browser dependency appears legitimate, so this is not malware-like by purpose or data exfiltration. The main risk is that it gives an AI agent a browser-driven workflow over arbitrary untrusted websites with local file-writing and asset download behavior, creating a meaningful indirect prompt-injection and hostile-content exposure surface.

Confidence: 88%Severity: 62%
Audit Metadata
Analyzed At
Mar 26, 2026, 07:16 PM
Package URL
pkg:socket/skills-sh/saccoai%2Fagent-skills%2Fsaccoai-website-analysis%2F@be98fa2e3fd753ed7be7f07a2c65b13ef02d328e