playwright-browser-take-screenshot
Pass
Audited by Gen Agent Trust Hub on Mar 13, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns, obfuscation, or unauthorized data access were found. The skill provides a metadata definition for a browser screenshot tool.
- [PROMPT_INJECTION]: The skill interacts with untrusted web content to capture screenshots. While this is a potential surface for visual prompt injection, the tool description explicitly warns that screenshots should be used for visual verification and not for automated actions.
- [DATA_EXFILTRATION]: The skill includes a
filenameargument for saving screenshot output. This is a standard functional component of the tool's primary purpose and does not constitute a security risk, as long as the underlying MCP server restricts file operations to designated output directories.
Audit Metadata