Chrome Web Automation

Security checks across static analysis, malware telemetry, and agentic risk

Overview

The skill is coherent and code-free, but it gives the agent broad control over a user's live Chrome session, including submitting forms, without clear approval limits.

Install only if you are comfortable letting the agent inspect and operate your active Chrome session. Before use, specify the exact tab or site, close private pages, and require approval before any submit, purchase, post, delete, or account-changing action.

Static analysis

No static analysis findings were reported for this release.

VirusTotal

VirusTotal findings are pending for this skill version.

View on VirusTotal

Risk analysis

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

What this means

If a request is ambiguous, the agent could submit forms or trigger actions on websites you are using.

Why it was flagged

This explicitly authorizes state-changing browser actions, including form submission, but the artifacts do not require confirmation before sensitive or irreversible actions.

Skill content
Click, type, submit, and screenshot using stable references.
Recommendation

Use only with a clearly specified target tab/site, and require explicit user confirmation before submitting forms, making purchases, posting content, deleting data, or changing account settings.

What this means

The agent may be able to act with the same privileges as your browser on logged-in websites.

Why it was flagged

A live Chrome session may include authenticated websites and account privileges; the skill does not bound which accounts, tabs, or sites may be used.

Skill content
Use this skill before any browser interaction that depends on the user's live Chrome session.
Recommendation

Close sensitive tabs, consider using a separate browser profile, and give narrow instructions about which tab or site the agent may access.