agent-browser
Automate Browser Sessions with Agentic Refs
AI agents often need reliable browser control without parsing full page DOMs. This skill provides compact refs, actions, screenshots, and reusable workflows.
Stop for confirmation before installing.
Review the plan and obtain explicit user consent before changing files.
Install with my Agent
Copy this request to your Agent. It includes the canonical Skill page and manifest.
Review the Skillstore skill "agent-browser" from https://skillstore.io/skills/inference-sh-skills-agent-browser.md and its manifest at https://skillstore.io/api/skills/inference-sh-skills-agent-browser/manifest. Verify the artifact. Stop and obtain explicit user consent before installing or changing files.Your Agent should still show its plan and request any confirmation required by the security policy.
Agent-readable resources
Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.
Test it
Using "agent-browser". Inspect a product page and identify the main actions.
Expected outcome:
The page loaded successfully. The main actions are search, add to cart, size selection, and account sign in.
Using "agent-browser". Record a failing checkout path for debugging.
Expected outcome:
The workflow produced a screenshot, a short recording, and a note that the payment step failed after address entry.
Using "agent-browser". Extract links from an approved documentation page.
Expected outcome:
- Captured the page title and visible navigation links.
- Saved a full page screenshot for reference.
- Reported stale refs after navigation and refreshed the snapshot.
Security Audit
High RiskMost static command, URL, path, and device findings are documentation or shell-template false positives. Confirmed risks include browser capture upload, SOCKS proxy support, cookie extraction guidance, sensitive session recording examples, and arbitrary page JavaScript execution. No prompt injection attempt was found in the reviewed files.
Confirmed security concerns (5)
Capability review items (6)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
⚙️ External commands (164)
🌐 Network access (54)
📁 Filesystem access (15)
Detected Patterns
Share & cite this report
Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.
Copy report link
https://skillstore.io/skills/inference-sh-skills-agent-browser/audits/4?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportMarkdown badge
[](https://skillstore.io/skills/inference-sh-skills-agent-browser?utm_source=security_passport_badge)HTML badge
<a href="https://skillstore.io/skills/inference-sh-skills-agent-browser?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/inference-sh-skills-agent-browser/security.svg" alt="Skillstore security assessment" loading="lazy"></a>Embed card
<iframe src="https://skillstore.io/embed/skills/inference-sh-skills-agent-browser.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>Academic citations (APA · BibTeX · CFF)
APA citation
inference-sh-skills. (2026). agent-browser security audit report (audit version 4) [Author version unspecified]. Skillstore. https://skillstore.io/skills/inference-sh-skills-agent-browser/audits/4BibTeX citation
@techreport{inference-sh-skills-inference-sh-skills-agent-browser-2026,
author = {inference-sh-skills},
title = {agent-browser security audit report (audit version 4)},
institution = {Skillstore},
year = {2026},
number = {4},
url = {https://skillstore.io/skills/inference-sh-skills-agent-browser/audits/4},
note = {Author version unspecified}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "agent-browser security audit report (audit version 4)"
version: "unspecified"
type: report
authors:
- name: "inference-sh-skills"
date-released: "2026-07-06"
url: "https://skillstore.io/skills/inference-sh-skills-agent-browser/audits/4"
identifiers:
- type: other
value: "skillstore:inference-sh-skills-agent-browser:audit:4"
description: "Skillstore immutable audit report identifier"
Compare variants
19 installable variantsEach author remains a separate installable skill. The recommended variant is ranked by Skillstore evidence.
Why this variant is first
supercent-io-agent-browser
2026-08-21
101-skills-agent-browser
2026-08-21
vercel-labs-agent-browser
2026-08-21
qu-skills-agent-browser
2026-08-21
am-will-agent-browser
2026-08-21
tul-sh-agent-browser
2026-08-21
inference-sh-8-agent-browser
2026-08-21
toolshell-agent-browser
2026-08-21
skillssh-agent-browser
2026-08-21
inference-sh-9-agent-browser
2026-08-21
inferen-sh-agent-browser
2026-08-21
inference-shell-agent-browser
2026-08-21
inferencesh-agent-browser
2026-08-21
inference-sh-skills-agent-browser
2026-08-21
inference-sh-0-agent-browser
2026-08-21
infsh-skills-agent-browser
2026-08-21
inf-sh-agent-browser
2026-08-21
inference-skills-agent-browser
2026-08-21
halt-catch-fire-agent-browser
2026-08-21
Skillstore Score
Why this score Evidence Confidence: MediumWhat You Can Build
Validate Web Flows
Run repeatable browser steps, capture evidence, and inspect failures in staging or production-like pages.
Collect Web Research
Open pages, extract visible text and links, and save screenshots for later analysis.
Prepare Support Documentation
Record browser workflows with cursor indicators and capture screenshots for customer-facing guides.
Try These Prompts
Open the target page with agent-browser, list the visible interactive elements, and summarize the page purpose.
Use the current snapshot refs to fill the contact form fields, submit it, and verify the resulting page state.
Start a recorded browser session, reproduce the issue step by step, take a full page screenshot, and close the session.
Navigate to each approved URL, refresh refs after every page change, extract visible text and links, and note any access failures.
Best Practices
- Use only approved URLs and respect site terms, rate limits, and access controls.
- Refresh snapshots after navigation, submissions, modals, or any dynamic page update.
- Disable recording and redact screenshots when pages may contain credentials or private data.
Avoid
- Do not use stale @e refs after a page changes or reloads.
- Do not record login, payment, admin, or customer data workflows without explicit approval.
- Do not use proxy rotation to bypass rate limits, identity controls, or geographic restrictions.
Frequently Asked Questions
What does this skill control?
Does it require another tool?
Can it handle authenticated sites?
Can it upload files?
When should I take a new snapshot?
Is proxy support available?
Developer Details
Author
inference-sh-skillsLicense
MIT
Skillstore revision
r1
Version notice
The author did not declare a version.
Ref
a06681402992ceae98ba04d54cfd4ab004862696
Maintenance freshness
7/18/2026
Usage
6 downloads · 65 views
File structure