agent-browser
Automate Browser Sessions with Element Refs
Manual browser workflows are slow to repeat and hard for agents to control. This skill routes actions through inference.sh with element refs, screenshots, video, and session state.
Stop for confirmation before installing.
Review the plan and obtain explicit user consent before changing files.
Install with my Agent
Copy this request to your Agent. It includes the canonical Skill page and manifest.
Review the Skillstore skill "agent-browser" from https://skillstore.io/skills/skillssh-agent-browser.md and its manifest at https://skillstore.io/api/skills/skillssh-agent-browser/manifest. Verify the artifact. Stop and obtain explicit user consent before installing or changing files.Your Agent should still show its plan and request any confirmation required by the security policy.
Agent-readable resources
Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.
Test it
Using "agent-browser". Inspect a product settings page and identify available actions.
Expected outcome:
The session opened successfully. The page contains settings tabs, save and cancel buttons, a notification toggle, and a billing link. A fresh snapshot is needed after changing tabs.
Using "agent-browser". Submit a contact form and capture evidence.
Expected outcome:
The form was filled and submitted. The final page shows a success message, and a full-page screenshot was saved for review.
Using "agent-browser". Record a short workflow for documentation.
Expected outcome:
The workflow was recorded from page load through the save action. The session was closed and the recording file was returned.
Security Audit
High RiskMost static findings are false positives from Markdown examples, shell templates, relative links, and /dev/null redirects. Confirmed risk remains for hosted browser capture, SOCKS proxy support, cookie extraction guidance, proxy rotation for rate-limit avoidance, and arbitrary JavaScript execution on browsed pages.
Confirmed security concerns (4)
Capability review items (3)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
⚙️ External commands (163)
🌐 Network access (54)
📁 Filesystem access (15)
Detected Patterns
Share & cite this report
Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.
Copy report link
https://skillstore.io/skills/skillssh-agent-browser/audits/4?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportMarkdown badge
[](https://skillstore.io/skills/skillssh-agent-browser?utm_source=security_passport_badge)HTML badge
<a href="https://skillstore.io/skills/skillssh-agent-browser?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/skillssh-agent-browser/security.svg" alt="Skillstore security assessment" loading="lazy"></a>Embed card
<iframe src="https://skillstore.io/embed/skills/skillssh-agent-browser.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>Academic citations (APA · BibTeX · CFF)
APA citation
skillssh. (2026). agent-browser security audit report (audit version 4) [Author version unspecified]. Skillstore. https://skillstore.io/skills/skillssh-agent-browser/audits/4BibTeX citation
@techreport{skillssh-skillssh-agent-browser-2026,
author = {skillssh},
title = {agent-browser security audit report (audit version 4)},
institution = {Skillstore},
year = {2026},
number = {4},
url = {https://skillstore.io/skills/skillssh-agent-browser/audits/4},
note = {Author version unspecified}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "agent-browser security audit report (audit version 4)"
version: "unspecified"
type: report
authors:
- name: "skillssh"
date-released: "2026-07-07"
url: "https://skillstore.io/skills/skillssh-agent-browser/audits/4"
identifiers:
- type: other
value: "skillstore:skillssh-agent-browser:audit:4"
description: "Skillstore immutable audit report identifier"
Compare variants
19 installable variantsEach author remains a separate installable skill. The recommended variant is ranked by Skillstore evidence.
Why this variant is first
supercent-io-agent-browser
2026-08-21
101-skills-agent-browser
2026-08-21
vercel-labs-agent-browser
2026-08-21
qu-skills-agent-browser
2026-08-21
am-will-agent-browser
2026-08-21
tul-sh-agent-browser
2026-08-21
inference-sh-8-agent-browser
2026-08-21
toolshell-agent-browser
2026-08-21
skillssh-agent-browser
2026-08-21
inference-sh-9-agent-browser
2026-08-21
inferen-sh-agent-browser
2026-08-21
inference-shell-agent-browser
2026-08-21
inferencesh-agent-browser
2026-08-21
inference-sh-skills-agent-browser
2026-08-21
inference-sh-0-agent-browser
2026-08-21
infsh-skills-agent-browser
2026-08-21
inf-sh-agent-browser
2026-08-21
inference-skills-agent-browser
2026-08-21
halt-catch-fire-agent-browser
2026-08-21
Skillstore Score
Why this score Evidence Confidence: MediumWhat You Can Build
Validate Web Flows
Run repeatable browser checks for login screens, forms, navigation paths, and visual states.
Capture Web Evidence
Collect screenshots, page text, links, and session videos for research or documentation tasks.
Operate Authenticated Pages
Use a persistent session to inspect dashboards and complete authorized browser actions.
Try These Prompts
Open the target URL with agent-browser. Summarize the page title, visible interactive elements, and any elements that need a fresh snapshot.
Open the form URL, identify the refs for each field, fill the provided values, submit the form, and verify the result with a new snapshot.
Record a browser session for this workflow, use pauses between major actions, capture a full-page screenshot, and close the session to retrieve the recording.
Use the execute function only on the authorized page. Extract visible headings, links, and table text, then report the data sources and any sensitive fields skipped.
Best Practices
- Refresh the snapshot after navigation, form submission, modal changes, or dynamic content updates.
- Use recording and screenshots only when the page does not show credentials or private data.
- Close sessions after work completes to limit retained browser state and captured artifacts.
Avoid
- Do not reuse old element refs after the page changes.
- Do not use proxy rotation to evade rate limits or site access rules.
- Do not extract cookies, tokens, passwords, or personal data from authenticated pages.
Frequently Asked Questions
What does this skill automate?
Does it require a local browser?
How are elements selected?
Can it work with authenticated sites?
Can it capture screenshots and video?
Is proxy support included?
Developer Details
Author
skillsshLicense
MIT
Skillstore revision
r1
Version notice
The author did not declare a version.
Ref
f93e9bb0daca99badb6a7e574b97737155d57cb3
Maintenance freshness
7/18/2026
Usage
13 downloads · 143 views
File structure