agent-browser
Automate Browser Workflows with Agent Browser
Manual web testing, data capture, and form workflows take time and are hard to repeat. This skill gives Claude, Codex, and Claude Code a structured browser workflow through inference.sh.
Stop for confirmation before installing.
Review the plan and obtain explicit user consent before changing files.
Install with my Agent
Copy this request to your Agent. It includes the canonical Skill page and manifest.
Review the Skillstore skill "agent-browser" from https://skillstore.io/skills/tul-sh-agent-browser.md and its manifest at https://skillstore.io/api/skills/tul-sh-agent-browser/manifest. Verify the artifact. Stop and obtain explicit user consent before installing or changing files.Your Agent should still show its plan and request any confirmation required by the security policy.
Agent-readable resources
Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.
Test it
Using "agent-browser". Inspect the login page for a staging app.
Expected outcome:
- The page opened successfully and exposed email, password, remember-me, and submit controls.
- A fresh snapshot is needed after sign-in because element references will change.
- No credentials were entered because the user did not approve that action.
Using "agent-browser". Capture a public documentation page for review.
Expected outcome:
- Saved a viewport screenshot and a full-page screenshot.
- Extracted the visible text and page links for analysis.
- Closed the browser session after capture completed.
Using "agent-browser". Record a short product workflow.
Expected outcome:
- Started a browser session with video recording enabled after confirmation.
- Completed the selected clicks and waits.
- Returned a video artifact when the session closed.
Security Audit
High RiskThe skill is a legitimate browser automation wrapper, but it carries high-risk capabilities because it drives a third-party browser service through shell commands. Static path traversal, Markdown backticks, placeholder URLs, /dev/null redirection, and reconnaissance matches were mostly false positives, while screenshots, video, proxy routing, file upload, JavaScript execution, and authenticated-session handling are confirmed risks.
Confirmed security concerns (6)
Capability review items (60)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
⚙️ External commands (163)
🌐 Network access (53)
📁 Filesystem access (15)
Detected Patterns
Share & cite this report
Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.
Copy report link
https://skillstore.io/skills/tul-sh-agent-browser/audits/4?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportMarkdown badge
[](https://skillstore.io/skills/tul-sh-agent-browser?utm_source=security_passport_badge)HTML badge
<a href="https://skillstore.io/skills/tul-sh-agent-browser?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/tul-sh-agent-browser/security.svg" alt="Skillstore security assessment" loading="lazy"></a>Embed card
<iframe src="https://skillstore.io/embed/skills/tul-sh-agent-browser.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>Academic citations (APA · BibTeX · CFF)
APA citation
tul-sh. (2026). agent-browser security audit report (audit version 4) [Author version unspecified]. Skillstore. https://skillstore.io/skills/tul-sh-agent-browser/audits/4BibTeX citation
@techreport{tul-sh-tul-sh-agent-browser-2026,
author = {tul-sh},
title = {agent-browser security audit report (audit version 4)},
institution = {Skillstore},
year = {2026},
number = {4},
url = {https://skillstore.io/skills/tul-sh-agent-browser/audits/4},
note = {Author version unspecified}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "agent-browser security audit report (audit version 4)"
version: "unspecified"
type: report
authors:
- name: "tul-sh"
date-released: "2026-07-07"
url: "https://skillstore.io/skills/tul-sh-agent-browser/audits/4"
identifiers:
- type: other
value: "skillstore:tul-sh-agent-browser:audit:4"
description: "Skillstore immutable audit report identifier"
Compare variants
19 installable variantsEach author remains a separate installable skill. The recommended variant is ranked by Skillstore evidence.
Why this variant is first
supercent-io-agent-browser
2026-08-21
101-skills-agent-browser
2026-08-21
vercel-labs-agent-browser
2026-08-21
qu-skills-agent-browser
2026-08-21
am-will-agent-browser
2026-08-21
tul-sh-agent-browser
2026-08-21
inference-sh-8-agent-browser
2026-08-21
toolshell-agent-browser
2026-08-21
skillssh-agent-browser
2026-08-21
inference-sh-9-agent-browser
2026-08-21
inferen-sh-agent-browser
2026-08-21
inference-shell-agent-browser
2026-08-21
inferencesh-agent-browser
2026-08-21
inference-sh-skills-agent-browser
2026-08-21
inference-sh-0-agent-browser
2026-08-21
infsh-skills-agent-browser
2026-08-21
inf-sh-agent-browser
2026-08-21
inference-skills-agent-browser
2026-08-21
halt-catch-fire-agent-browser
2026-08-21
Skillstore Score
Why this score Evidence Confidence: MediumWhat You Can Build
Repeat Web Form Checks
Open a test form, discover element references, fill fields, submit, and capture evidence for review.
Collect Public Page Content
Capture page text, links, screenshots, and basic metadata from public pages for structured analysis.
Document Browser Workflows
Record guided browser sessions and screenshots that show a product workflow step by step.
Try These Prompts
Open this URL, take a snapshot, list the important interactive elements, then close the browser session: [URL].
Open [URL], capture a full-page screenshot, summarize the visible page state, and close the session.
Use the form automation pattern on [URL]. Discover the form fields, ask before entering sensitive data, submit only after confirmation, and report the result.
Guide me through an authenticated browser workflow for [APP]. Do not record video or extract cookies unless I explicitly approve that step.
Best Practices
- Ask for confirmation before entering credentials, uploading files, recording video, or extracting cookies.
- Use the newest snapshot after every navigation, form submission, modal change, or dynamic update.
- Close sessions promptly and avoid storing screenshots or videos that contain sensitive data.
Avoid
- Do not automate sites where you lack permission or where automation violates terms.
- Do not use proxy rotation to bypass rate limits or access controls.
- Do not hardcode passwords, 2FA secrets, session cookies, or proxy credentials in prompts or scripts.
Frequently Asked Questions
Does this skill require another service?
Can it click and type on web pages?
Can it record videos?
Can it handle login flows?
Does it support proxies?
Is it safe for confidential sites?
Developer Details
Author
tul-shLicense
MIT
Skillstore revision
r1
Version notice
The author did not declare a version.
Ref
36e07d5e13068e5be64447e8f20b427cf2cbd21a
Maintenance freshness
7/18/2026
Usage
34 downloads · 213 views
File structure