browser-verify

Warn

Audited by Socket on May 5, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the stated browser-verification purpose mostly matches the behavior, but the footprint is broader than necessary due to unpinned third-party CLI installs, dynamic npx execution, and optional external screenshot upload. Main risk is supply-chain trust and data leaving the local environment, not confirmed malware.

Confidence: 82%Severity: 74%
Audit Metadata
Analyzed At
May 5, 2026, 09:07 AM
Package URL
pkg:socket/skills-sh/stevengonsalvez%2Fagents-in-a-box%2Fbrowser-verify%2F@2bfb6cc3806cfa376126c4bd150f60f4eadc6bce