agent-browser
Automate Browser Workflows
Browser tasks often require repeated clicks, forms, screenshots, and page inspection. This skill gives Claude, Codex, and Claude Code a reusable browser automation workflow through inference.sh.
Do not auto-install this skill.
The canonical policy requires operator review before any installation action.
Install with my Agent
Copy this request to your Agent. It includes the canonical Skill page and manifest.
Review the Skillstore skill "agent-browser" from https://skillstore.io/skills/inference-sh-9-agent-browser.md and its manifest at https://skillstore.io/api/skills/inference-sh-9-agent-browser/manifest. Verify the artifact. Do not auto-install. Inspect the skill and report your findings, then wait for an operator or manual installation decision.Your Agent should still show its plan and request any confirmation required by the security policy.
Agent-readable resources
Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.
Test it
Using "agent-browser". Inspect a product page and capture useful evidence.
Expected outcome:
A concise page report with title, URL, visible controls, extracted text highlights, link summary, and screenshot availability.
Using "agent-browser". Submit a test contact form and verify completion.
Expected outcome:
A workflow summary showing filled fields, submitted action, final page state, success indicators, and validation messages.
Using "agent-browser". Record a failing browser interaction for review.
Expected outcome:
A debugging note with the failed action, current page state, likely cause, and the saved recording reference.
Security Audit
CriticalMost static shell, URL, filesystem, and Markdown backtick findings are benign documentation or formatting artifacts. Confirmed risks include the pipe-to-shell installer, screen and video capture, SOCKS proxy routing, executable shell templates, cookie extraction, arbitrary page JavaScript, proxy rotation, and local file upload. No prompt injection attempt was found in the reviewed files.
Confirmed security concerns (6)
Capability review items (31)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
โ๏ธ External commands (163)
๐ Network access (55)
๐ Filesystem access (15)
Detected Patterns
Share & cite this report
Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.
Copy report link
https://skillstore.io/skills/inference-sh-9-agent-browser/audits/5?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportMarkdown badge
[](https://skillstore.io/skills/inference-sh-9-agent-browser?utm_source=security_passport_badge)HTML badge
<a href="https://skillstore.io/skills/inference-sh-9-agent-browser?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/inference-sh-9-agent-browser/security.svg" alt="Skillstore security assessment" loading="lazy"></a>Embed card
<iframe src="https://skillstore.io/embed/skills/inference-sh-9-agent-browser.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>Academic citations (APA ยท BibTeX ยท CFF)
APA citation
inference-sh-9. (2026). agent-browser security audit report (audit version 5) [Author version unspecified]. Skillstore. https://skillstore.io/skills/inference-sh-9-agent-browser/audits/5BibTeX citation
@techreport{inference-sh-9-inference-sh-9-agent-browser-2026,
author = {inference-sh-9},
title = {agent-browser security audit report (audit version 5)},
institution = {Skillstore},
year = {2026},
number = {5},
url = {https://skillstore.io/skills/inference-sh-9-agent-browser/audits/5},
note = {Author version unspecified}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "agent-browser security audit report (audit version 5)"
version: "unspecified"
type: report
authors:
- name: "inference-sh-9"
date-released: "2026-07-06"
url: "https://skillstore.io/skills/inference-sh-9-agent-browser/audits/5"
identifiers:
- type: other
value: "skillstore:inference-sh-9-agent-browser:audit:5"
description: "Skillstore immutable audit report identifier"
Compare variants
19 installable variantsEach author remains a separate installable skill. The recommended variant is ranked by Skillstore evidence.
Why this variant is first
supercent-io-agent-browser
2026-08-21
101-skills-agent-browser
2026-08-21
vercel-labs-agent-browser
2026-08-21
qu-skills-agent-browser
2026-08-21
am-will-agent-browser
2026-08-21
tul-sh-agent-browser
2026-08-21
inference-sh-8-agent-browser
2026-08-21
toolshell-agent-browser
2026-08-21
skillssh-agent-browser
2026-08-21
inference-sh-9-agent-browser
2026-08-21
inferen-sh-agent-browser
2026-08-21
inference-shell-agent-browser
2026-08-21
inferencesh-agent-browser
2026-08-21
inference-sh-skills-agent-browser
2026-08-21
inference-sh-0-agent-browser
2026-08-21
infsh-skills-agent-browser
2026-08-21
inf-sh-agent-browser
2026-08-21
inference-skills-agent-browser
2026-08-21
halt-catch-fire-agent-browser
2026-08-21
Skillstore Score
Why this score Evidence Confidence: MediumWhat You Can Build
QA Regression Checks
Run repeatable browser flows, capture evidence, and inspect failures with screenshots or video.
Research Page Capture
Open target pages, extract visible text, collect links, and save screenshots for review.
Internal Workflow Automation
Automate approved forms and authenticated tasks when credentials and data handling are controlled.
Try These Prompts
Open the target URL with agent-browser. Show the page title, current URL, screenshot status, and available @e refs.
Use agent-browser to inspect this form, fill the required fields with my provided values, submit it, and verify the result.
Browse these approved pages, capture screenshots, extract visible text and links, and summarize key findings with source URLs.
Use an existing approved session to reproduce this workflow, record only non-sensitive steps, and report failed refs or page changes.
Best Practices
- Use only approved websites, accounts, and data sources before automating browser actions.
- Disable video recording when pages may show passwords, tokens, payment data, or private records.
- Re-snapshot after every navigation, form submission, modal change, or dynamic content update.
Avoid
- Do not use proxy rotation to evade rate limits, access controls, or website terms.
- Do not print, store, or share cookies, passwords, screenshots, or videos containing secrets.
- Do not run bundled shell templates before reviewing URLs, output paths, and credential handling.
Frequently Asked Questions
What does this skill automate?
Does it require an external service?
Can it handle login flows?
Can it run JavaScript?
Why are @e refs important?
Is this safe to publish without review?
Developer Details
Author
inference-sh-9License
MIT
Skillstore revision
r1
Version notice
The author did not declare a version.
Ref
a06681402992ceae98ba04d54cfd4ab004862696
Maintenance freshness
7/18/2026
Usage
13 downloads ยท 213 views
File structure
๐ references/
๐ authentication.md
๐ commands.md
๐ proxy-support.md
๐ snapshot-refs.md
๐ video-recording.md
๐ templates/
๐ capture-workflow.sh
๐ form-automation.sh
๐ SKILL.md