| Pre-install decision |
|---|
| | 79 · Manual review | 80 · Evidence missing |
|---|
| Clear source, High execution risk, Universal | Clear source, High execution risk, Claude | Source needs review, High execution risk, Claude |
|---|
| High | | High |
|---|
| unexpected code execution, data exfiltration, human approval gap | data exfiltration, human approval gap | unexpected code execution, identity privilege abuse, data exfiltration |
|---|
| broad permissions, shell without guardrails, network without allowlist | missing license, broad permissions, network without allowlist | missing repo, missing license, broad permissions |
|---|
| Permission review, Network, Command | Network, Command | Permission review, Network, Secrets, Command |
|---|
| 67% | 67% | |
|---|
| Source & provenance |
|---|
| fingerprintjs/BotD | vercel-labs/agent-browser | Source needs review |
|---|
| Web & Automation | Web & Automation | Web & Automation |
|---|
|
|---|
| Risk & permission signals |
|---|
| No explicit signals | network access | needs credentials, network access, runs shell, writes files |
|---|
| repository clone, local runtime dependencies | local skill installation, workspace file updates | review skill metadata before install, check required credentials in skill docs, requires local binaries: node, npx |
|---|
| Install & compatibility |
|---|
| Universal | Claude, Codex, Cursor, Windsurf | Codex, OpenClaw, Claude, Cursor, Universal |
|---|
| script-backed | instruction-only | instruction-only |
|---|
|
|---|
| Community |
|---|
| 1.4K | | 80 |
|---|