Skills industry-key-contact-radar-api-skill
๐Ÿ“ฆ

industry-key-contact-radar-api-skill

Content revision r2 Medium Risk ๐ŸŒ Network access๐Ÿ”‘ Env variablesโš™๏ธ External commands

Find Industry Decision-Makers with BrowserAct

Finding relevant public profiles across platforms takes time and produces inconsistent records. This skill runs a BrowserAct workflow and returns structured profile details.

Supports: Claude Codex Code(CC)
๐Ÿ“Š 66 Adequate

Install with my Agent

Copy this request to your Agent. It includes the canonical Skill page and manifest.

Agent request
Review the Skillstore skill "industry-key-contact-radar-api-skill" from https://skillstore.io/skills/browser-act-industry-key-contact-radar-api-skill.md and its manifest at https://skillstore.io/api/skills/browser-act-industry-key-contact-radar-api-skill/manifest. Verify the artifact. You may proceed after verification, subject to the environment's own policy.

Your Agent should still show its plan and request any confirmation required by the security policy.

Test it

Using "industry-key-contact-radar-api-skill". Find healthcare founders on LinkedIn with a limit of 10.

Expected outcome:

  • Profile name: Example Founder
  • Profile URL: Public LinkedIn profile link
  • Introduction: Healthcare company founder
  • Company: Example Health Company

Using "industry-key-contact-radar-api-skill". Find marketing managers in e-commerce on Facebook with a limit of 5.

Expected outcome:

A concise contact list with each public profile link, displayed name, available introduction, and company association.

Using "industry-key-contact-radar-api-skill". Find engineering directors in developer tooling on GitHub with a limit of 15.

Expected outcome:

A review list grouped by company, with profile links and available biography text for each returned person.

Security Audit

Medium Risk
v6 โ€ข 7/23/2026 Open versioned report

Most static alerts are false positives caused by Markdown syntax, documentation examples, and expected use of the BrowserAct API. Confirmed risks include chat-based API key solicitation and execution of a bundled networked script. Raw third-party profile content is also returned without trust-boundary guidance.

2
Files scanned
242
Lines analyzed
3
Review items
0
False positives ignored

Confirmed security concerns (1)

Medium
Untrusted Profile Content Returned Without Trust Guidance
The script returns and prints BrowserAct output unchanged. Scraped profile text could contain instructions that influence an agent unless treated strictly as data.
The code directly returns and prints remote workflow output without field validation or instructions to treat embedded text as untrusted.
Capability review items (3)

These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.

High
Generic API/secret keys
print("3. Set it as an environment variable (BROWSERACT_API_KEY) or provide it in the chat.", flush=
This instruction explicitly suggests providing the API key in chat, exposing a credential to conversation history and logs.
High
Generic API/secret keys
Before running, you must check the `BROWSERACT_API_KEY` environment variable. If it is not set, do n
The prose requires the agent to ask and wait for the user to provide the API key, encouraging credential disclosure in chat.
Medium
Ruby/shell backtick execution
```bash
This fenced block directs the agent to execute the bundled Python script, which sends user inputs and a credential to BrowserAct.
Audited by: codex View Audit History โ†’
Share & cite this report

Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.

Open versioned report
Security Assessment

Copy report link

https://skillstore.io/skills/browser-act-industry-key-contact-radar-api-skill/audits/6?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_report

Markdown badge

[![Skillstore security assessment](https://skillstore.io/badges/skills/browser-act-industry-key-contact-radar-api-skill/security.svg)](https://skillstore.io/skills/browser-act-industry-key-contact-radar-api-skill?utm_source=security_passport_badge)

HTML badge

<a href="https://skillstore.io/skills/browser-act-industry-key-contact-radar-api-skill?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/browser-act-industry-key-contact-radar-api-skill/security.svg" alt="Skillstore security assessment" loading="lazy"></a>

Embed card

<iframe src="https://skillstore.io/embed/skills/browser-act-industry-key-contact-radar-api-skill.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>
Academic citations (APA ยท BibTeX ยท CFF)

APA citation

browser-act. (2026). industry-key-contact-radar-api-skill security audit report (audit version 6) [Author version unspecified]. Skillstore. https://skillstore.io/skills/browser-act-industry-key-contact-radar-api-skill/audits/6

BibTeX citation

@techreport{browser-act-browser-act-industry-key-contact-radar-api-skill-2026, author = {browser-act}, title = {industry-key-contact-radar-api-skill security audit report (audit version 6)}, institution = {Skillstore}, year = {2026}, number = {6}, url = {https://skillstore.io/skills/browser-act-industry-key-contact-radar-api-skill/audits/6}, note = {Author version unspecified} }

CITATION.cff

cff-version: 1.2.0 message: "If you use this Skill, cite its author and this versioned security audit report." title: "industry-key-contact-radar-api-skill security audit report (audit version 6)" version: "unspecified" type: report authors: - name: "browser-act" date-released: "2026-07-23" url: "https://skillstore.io/skills/browser-act-industry-key-contact-radar-api-skill/audits/6" identifiers: - type: other value: "skillstore:browser-act-industry-key-contact-radar-api-skill:audit:6" description: "Skillstore immutable audit report identifier"

Skillstore Score

Why this score Evidence Confidence: High
45
Architecture
85
Maintainability
87
Content
68
Community
83
Spec Compliance

What You Can Build

Build a Sales Prospect List

Find public founder or executive profiles in a target industry for qualified account research.

Source Leadership Candidates

Locate public profiles for specific roles and review their introductions and company associations.

Map Competitor Personnel

Identify public decision-maker profiles across selected sites for market and competitor analysis.

Try These Prompts

Find Basic Contacts
Find up to 10 founders in healthcare on LinkedIn. Return each public profile name, URL, introduction, and company.
Target a Specific Role
Search github.com for up to 15 engineering directors in developer tooling. Group results by company and include source profile links.
Research an Industry Segment
Find up to 20 growth leaders in financial technology on LinkedIn. Highlight profiles whose introductions mention partnerships or international expansion.
Compare Two Public Sources
Run separate searches for renewable energy founders on LinkedIn and GitHub. Deduplicate profile URLs and separate confirmed matches from uncertain matches.

Best Practices

  • Store BROWSERACT_API_KEY in the environment or a secret manager, never in prompts or chat.
  • Start with a small result limit, then verify relevance before expanding the search.
  • Review applicable privacy laws, platform terms, and outreach rules before using profile data.

Avoid

  • Do not paste API keys into chat, command history, source files, or shared logs.
  • Do not treat returned names, roles, or companies as verified without independent review.
  • Do not use the skill for indiscriminate collection, harassment, or noncompliant automated outreach.

Frequently Asked Questions

What credentials does this skill require?
It requires a BrowserAct API key stored in the BROWSERACT_API_KEY environment variable.
Which sites can I search?
The site parameter accepts a target domain. Documented examples include Facebook, LinkedIn, and GitHub.
What information can the skill return?
Expected fields include a public profile URL, name, introduction, and company association.
How long can a search run?
The script polls every 10 seconds and stops after 15 minutes if the task does not finish.
Does the skill verify every result?
No. BrowserAct supplies the results, and users should verify identity, relevance, accuracy, and current employment independently.
What happens when BrowserAct rejects the request?
The script reports authorization, concurrency, task failure, cancellation, network, and timeout errors.

Developer Details

License

MIT

Skillstore revision

r2

Version notice

The author did not declare a version.

Ref

a39a91716eadede5f4cdefd78178fed4e837a128

Maintenance freshness

7/24/2026

Usage

5 downloads ยท 84 views

File structure

๐Ÿ“ scripts/

๐Ÿ“„ industry_key_contact_radar_api.py

๐Ÿ“„ SKILL.md

More from browser-act

View all
View all