camofox-browserHeadless browser server enabling AI agents to create tabs, navigate, interact, and capture snapshots with element references locally or in the cloud.
Install via ClawdBot CLI:
clawdbot install sheffk78/camofox-browserGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Accesses sensitive credential files or environment variables
/etc/passwdSends data to undocumented external endpoint (potential exfiltration)
POST → http://localhost:9377/sessions/agent1/cookiesContains telemetry, tracking, or analytics calls not mentioned in documentation
beacon (Calls external URL not in known-safe list
http://localhost:9377Usage Guide
Loading usage data… refresh in a few seconds.
Scored Apr 19, 2026
AI Analysis
The skill is a local browser automation server with no evidence of sending data to unauthorized external servers. The 'UNKNOWN_DATA_SINK' signal points to its own local API endpoint, not an external one, and the '/etc/passwd' reference appears to be a truncated test command, not active credential harvesting. The design aligns with its stated purpose, and the primary risk is local data isolation, not exfiltration.
Audited Apr 17, 2026 · audit v1.0
A fast Rust-based headless browser automation CLI with Node.js fallback that enables AI agents to navigate, click, type, and snapshot pages via structured commands.
Uses a headless browser to navigate web pages, interact with elements, and extract clean, readable text content from URLs.
Headless browser automation CLI optimized for AI agents with accessibility tree snapshots and ref-based element selection
High-performance browser automation for heavy scraping, multi-tab management, and precise DOM extraction. Use this when you need speed, reliability, or advanced state management (cookies/local storage) beyond standard web fetching.
Ultimate stealth browser automation with anti-detection, Cloudflare bypass, CAPTCHA solving, persistent sessions, and silent operation. Use for any web automation requiring bot detection evasion, login persistence, headless browsing, or bypassing security measures. Triggers on "bypass cloudflare", "solve captcha", "stealth browse", "silent automation", "persistent login", "anti-detection", or any task needing undetectable browser automation. When user asks to "login to X website", automatically use headed mode for login, then save session for future headless reuse.
Browser automation CLI (browser-act) for AI agents. MUST trigger when: (1) user mentions 'browser-act' in any form, or user needs to: (2) open/visit/browse/c...