审计历史
playwright-browser - 5 审计
审计版本 5
最新 中风险Jan 16, 2026, 06:19 PM
Legitimate browser automation skill using Playwright. Medium risk due to browser control capabilities which inherently allow navigation to arbitrary URLs and interaction with web content. Static findings are mostly false positives from documentation examples being misidentified as executable code. The 'weak cryptographic algorithm' alerts are triggered by the word 'Playwright' in filenames - not actual crypto usage. The 'Ruby/shell backtick execution' alerts flag bash command examples in markdown documentation, not actual backtick usage.
风险因素
⚙️ 外部命令 (1)
📁 文件系统访问 (1)
审计版本 4
中风险Jan 16, 2026, 06:19 PM
Legitimate browser automation skill using Playwright. Medium risk due to browser control capabilities which inherently allow navigation to arbitrary URLs and interaction with web content. Static findings are mostly false positives from documentation examples being misidentified as executable code. The 'weak cryptographic algorithm' alerts are triggered by the word 'Playwright' in filenames - not actual crypto usage. The 'Ruby/shell backtick execution' alerts flag bash command examples in markdown documentation, not actual backtick usage.
风险因素
⚙️ 外部命令 (1)
📁 文件系统访问 (1)
审计版本 3
中风险Jan 10, 2026, 11:42 AM
Legitimate browser automation skill using Playwright. Medium risk due to browser control capabilities which inherently allow navigation to arbitrary URLs and interaction with web content. No malicious patterns detected. User controls all navigation targets.
风险因素
📁 文件系统访问 (1)
⚙️ 外部命令 (1)
审计版本 2
中风险Jan 10, 2026, 11:42 AM
Legitimate browser automation skill using Playwright. Medium risk due to browser control capabilities which inherently allow navigation to arbitrary URLs and interaction with web content. No malicious patterns detected. User controls all navigation targets.
风险因素
📁 文件系统访问 (1)
⚙️ 外部命令 (1)
审计版本 1
中风险Jan 10, 2026, 11:42 AM
Legitimate browser automation skill using Playwright. Medium risk due to browser control capabilities which inherently allow navigation to arbitrary URLs and interaction with web content. No malicious patterns detected. User controls all navigation targets.