Scanned skills

googlechrome/modern-web-guidance chrome-extensions

Checked the catalogued skill at chrome-extensions.

SkillTrust corpus scan 22 September 2026 v0.10.0 via skillsh Verify on GitHub
F AI-triaged 7
F Security

F; retained sample includes a critical finding · SD-013 · what this rule accepts as a false positive →

A Permissions

A set by no findings on this axis

B Transparency

B; retained sample includes a medium finding · SD-007 · what this rule accepts as a false positive →

7 findings
securitycritical SD-013
references/extensions/auth-identity.md
transparencymedium SD-007
references/extensions/auth-identity.md
securityhigh SD-007
references/extensions/auth-identity.md
securityhigh SD-022
references/extensions/user-scripts.md
securityhigh SD-022
references/extensions/user-scripts.md
securityhigh SD-007
references/webstore/privacy-policy.md
securityhigh SD-007
references/webstore/store-listing.md
4 suppressed by AI triage
transparencymedium SD-007 benign_example
references/extensions/api-calling.md

Example documentation showing a curl command, not an actual malicious call or broad permission grant.

securityhigh SD-007 benign_example
references/extensions/api-calling.md

Sample fetch example in documentation; no evidence of malicious intent or broad host permissions.

securityhigh SD-007 benign_example
references/extensions/api-calling.md

Code snippet illustrating error handling for fetch; purely illustrative, not a malicious payload.

securityhigh SD-007 benign_example
references/extensions/omnibox.md

The fetch call appears only in a documentation example, not in executable code, so it does not represent an active outbound network call.