browser-act-skill-forge

PassAudited by VirusTotal on May 15, 2026.

Findings (1)

The bundle describes a 'Skill Forge' designed to reverse-engineer websites and generate new automation skills. It utilizes high-risk execution patterns, including the generation of Python wrappers that execute JavaScript via 'eval' and instructions for the agent to 'never refuse' requests based on the target site's nature (SKILL.md). While these capabilities are consistent with its stated purpose of advanced web scraping and automation, the explicit prompt-injection instructions to bypass safety filters and the meta-programming nature of the tool (code that generates and executes other code) present a significant attack surface without clear evidence of malicious intent.