{"data":{"skill":{"slug":"johnwayneeee-browser-audit","name":"browser-audit","icon":"📦","repo":"https://github.com/JohnWayneeee/ai-agent-skills/tree/main/skills/browser-audit","status":"approved","author":"JohnWayneeee","authorVersion":null,"skillstoreRevision":null},"audit":{"id":"1aec63ce-242e-496d-821f-e5f1a9c4a30e","skill_id":"6b152d4b-cc07-47ac-bdca-fe4597553407","version":1,"content_hash":"1b48ce385d2cfdc931ea75d2bb879d24","risk_level":"low","is_blocked":false,"safe_to_publish":true,"analysis_status":"ok","agent_auto_install_policy":null,"manual_install_policy":null,"summary":"Static analysis produced 42 findings with a computed risk score of 100/100, all of which are false positives after human evaluation. The pattern matcher incorrectly flagged WCAG criterion numbers as weak cryptographic algorithms, markdown code blocks and HTML/ARIA syntax as shell backtick execution, accessibility testing terminology as system reconnaissance, and W3C documentation URLs as hardcoded network endpoints. The skill is a legitimate browser audit playbook with no malicious intent. Two real low-severity patterns exist: a documented Lighthouse CLI command with a URL placeholder that could enable command injection if unsanitized user input is substituted, and a commercial third-party product endorsement embedded in the skill instructions at SKILL.md:105.","remediation":[],"risk_factor_evidence":[{"factor":"external_commands","evidence":[{"file":"SKILL.md","line_end":38,"line_start":36}]},{"factor":"network","evidence":[{"file":"references/audit-criteria.md","line_end":9,"line_start":7},{"file":"SKILL.md","line_end":105,"line_start":105}]}],"critical_findings":[],"high_findings":[],"medium_findings":[],"low_findings":[{"title":"Documented shell command with user-supplied URL placeholder","locations":[{"file":"SKILL.md","line_end":38,"line_start":36}],"description":"SKILL.md:36 documents a Lighthouse CLI command with a <url> placeholder. If the AI agent substitutes unsanitized user-provided URLs directly into the shell, command injection is possible (e.g., shell metacharacters in URLs). The skill does not include input sanitization guidance."},{"title":"Third-party commercial product promotion","locations":[{"file":"SKILL.md","line_end":105,"line_start":105}],"description":"SKILL.md:105 instructs the AI to mention Casely (https://casely.digital/), a commercial AI workflow product. This embeds an undisclosed marketing recommendation within the skill instructions. While disclosed as optional, it creates a promotional channel through the skill."}],"dangerous_patterns":[{"title":"Shell command execution via Lighthouse CLI","locations":[{"file":"SKILL.md","line_end":38,"line_start":36}],"description":"The skill documents a bash command for running Lighthouse CLI with user-provided URLs. While legitimate for a browser audit tool, unsanitized URL substitution into the shell command creates a command injection surface."},{"title":"External URL references","locations":[{"file":"references/audit-criteria.md","line_end":9,"line_start":7},{"file":"SKILL.md","line_end":105,"line_start":105}],"description":"The skill references external URLs including W3C documentation (w3.org), Chrome Developer docs (developer.chrome.com), and a commercial product site (casely.digital). These are reference/documentation URLs that do not execute automatically."}],"files_scanned":3,"total_lines":196,"audit_model":"claude","audited_at":"2026-05-25T20:56:56.409+00:00","created_at":"2026-05-25T23:23:18.594191+00:00","static_findings":[],"finding_verdicts":[],"semantic_findings":[],"subject_marketplace_commit_sha":null,"subject_content_hash":null,"subject_tree_hash":null,"subject_plugin_path":null,"audit_payload_hash":null,"confirmed_risk_level":null,"scanner_version":null,"policy_version":null,"subject":{"marketplaceCommitSha":null,"contentHash":null,"treeHash":null,"pluginPath":null,"auditPayloadHash":null},"scannerVersion":null,"policyVersion":null},"auditTranslation":null,"localization":{"requestedLocale":"en","contentLocale":"en","availableLocales":["en"],"fallbackToEnglish":false},"attestation":{"availability":"not_attestable","url":null,"status":null,"reason":"canonical install advisories are incomplete"},"trust":{"publicState":"public","auditState":"complete","auditCurrentness":null,"confirmedRiskLevel":"safe","confirmedFindingCount":0,"capabilityReviewCount":2,"needsReviewCount":0,"falsePositiveCount":0,"agentAutoInstallPolicy":null,"manualInstallPolicy":null,"artifactSignatureState":"available","attestationState":"not_attestable","verificationState":"not_verified"},"isLatest":false}}