localhost-screenshots
Warn
Audited by Socket on Apr 20, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: The screenshot capabilities are coherent with the stated purpose and there is no clear credential theft or exfiltration behavior. The main security issue is install trust: the skill is obtained through a third-party transitive skill installation, plus remote package/binary downloads for Playwright, which raises meaningful supply-chain risk even though the operational behavior itself is otherwise proportionate.
Confidence: 88%Severity: 74%
Audit Metadata