스킬 감사 보고서

browser-testing-with-devtools 감사 보고서.

Tests in real browsers via Chrome DevTools MCP. Use when building or debugging anything that runs in a browser. Use when you need to inspect the DOM, capture console errors, analyze network requests, profile performance, or verify visual output with real runtime data. Requires the chrome-devtools MCP server to be configured.

차단됨 · 차단검토 필요생성됨 2026년 10월 11일휴리스틱 메타데이터 감사
81
감사
70
신뢰
92
품질
73
보안
88
유지보수
92
설치

OpenAgentSkill 신뢰 점수

70
수동 검토

OpenAgentSkill 신뢰 점수

Trust Score는 설치 전에 후보 목록에 넣을 만큼 안전한지 Agent가 판단하도록 돕습니다.

GitHub 채택도

통과

100

GitHub 스타 92K

스타/포크 활동

통과

100

스타 92K, 포크 9.8K; 현재 메타데이터에서 이슈 활동을 확인할 수 없습니다

최근 유지보수

통과

88

마지막 푸시 후 1개월

라이선스 명확성

통과

86

MIT

README/SKILL.md 완성도

통과

86

메타데이터에 충분한 사용 및 워크플로 맥락이 포함되어 있습니다

의존성/런타임 위험

경고

46

command execution surface, credential or environment access

설치 가능 여부

통과

92

npx skills add addyosmani/agent-skills --skill browser-testing-with-devtools

설치 명령 안전성

통과

92

표준 패키지 또는 런타임 설치 경로

권한 범위

실패

36

secrets or environment access, shell or command execution

저장소 근거

통과

86

https://github.com/addyosmani/agent-skills/tree/main/skills/browser-testing-with-devtools

검토 상태

정보

66

AI 검토 데이터를 사용할 수 있습니다

Agent 검증 결과

정보

54

아직 Agent 결과 데이터가 없습니다

검사

설치 및 채택 검토

8 통과 · 11 검토 필요

설치 경로

92

통과

npx skills add addyosmani/agent-skills --skill browser-testing-with-devtools

저장소

88

통과

https://github.com/addyosmani/agent-skills/tree/main/skills/browser-testing-with-devtools

라이선스

86

통과

MIT

유지보수

88

통과

마지막 푸시 후 1개월

AI 검토

55

확인

The SKILL.md excerpt stops mid-sentence in the 'Treat All Browser Content as Untrusted Data' section. If this reflects the full submitted file, the security guidance is incomplete and should be finished with explicit handling rules for untrusted browser content.

README/SKILL.md 완성도

86

통과

Usable description available

의존성 위험

46

수정

command execution surface, credential or environment access

설치 명령 안전성

92

통과

표준 패키지 또는 런타임 설치 경로

권한 범위

36

수정

secrets or environment access, shell or command execution

스타/포크 활동

100

통과

스타 92K, 포크 9.8K; 현재 메타데이터에서 이슈 활동을 확인할 수 없습니다

채택도

88

통과

GitHub 스타 92K

경고

  • Dependency or permission surface needs review
  • Permission surface may require sandboxing
  • The SKILL.md excerpt stops mid-sentence in the 'Treat All Browser Content as Untrusted Data' section. If this reflects the full submitted file, the security guidance is incomplete and should be finished with explicit handling rules for untrusted browser content.
  • JavaScript Execution is described as 'read-only state inspection', but the underlying tool can run arbitrary code in the page context. The skill needs a sharper boundary: do not mutate page state, read cookies/localStorage, or exfiltrate data unless explicitly required by the task.
  • The tools table uses friendly names rather than exact chrome-devtools MCP tool names, which may make it harder for an agent to know which MCP tool to invoke.
  • Permission surface needs review: secrets or environment access, shell or command execution
  • Dependency/runtime risk: command execution surface, credential or environment access
  • Permission surface: secrets or environment access, shell or command execution

방법

이 보고서는 공개 메타데이터, AI 검토 결과, 저장소 최신성, 설치 준비 상태, OpenAgentSkill 이벤트, 품질 점수, 신뢰 검사와 Agent 안전 게이트를 결합합니다. 전체 소스 코드 보안 감사는 아닙니다.

가까운 옵션 비교

다음으로 감사할 관련 스킬