content-extractor
Audited by Socket on Mar 8, 2026
1 alert found:
Obfuscated FileThe skill's footprint is broadly coherent with its stated purpose of multi-platform content extraction and downstream document/media processing. It relies on standard, verifiable tooling (pip, Playwright) and uses user-provided URLs without hard-credential storage. The risk surface is moderate: data is fetched from external sites, rendered with Playwright in full mode, and written to local storage, with potential data flows to downstream hubs. There are no unverifiable binaries, no credential harvesting patterns, and no autonomous real-world actions identified. Overall, the skill is BENIGN with MEDIUM risk due to data handling and cross-platform scraping, and it warrants standard secure handling of downloaded content and rate-limiting to respect platform terms.