審計歷史
browser-use - 2 審計
審計版本 2
最新 低風險Mar 19, 2026, 08:21 AM
Static analysis flagged 163 patterns in SKILL.md documentation file. All findings are false positives: backtick patterns are markdown code blocks documenting CLI usage, URLs are example/documentation links, and file paths reference user-controlled locations for legitimate browser profile and cookie management. The skill provides browser automation via the browser-use CLI with no malicious intent detected.
中風險問題 (1)
低風險問題 (2)
風險因素
⚙️ 外部命令 (2)
🌐 網路存取 (2)
📁 檔案系統存取 (2)
審計版本 1
低風險Jan 26, 2026, 07:53 AM
Static analysis flagged patterns in SKILL.md documentation as potential security risks. After evaluation, all findings are false positives: bash code blocks were misidentified as shell execution, example URLs were flagged as hardcoded network endpoints, and documented environment variables were misclassified as credential access. The skill is a legitimate browser automation CLI tool with no malicious code or behavior patterns.