This browser setup skill is not clearly malicious, but it gives agents broad browser-control, session, network, and install capabilities with weak scoping and unsafe fallback guidance.
Review before installing. Only use this in an isolated test environment where direct CDP control, remote package installs, OpenClaw MCP configuration changes, and optional browser-use capabilities are explicitly approved. Avoid reusing real Chrome profiles or authenticated sessions, do not use tunnels or residential proxies without authorization, and treat any SSRF policy block as a security decision rather than something to work around.