youtube-api-skill — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited youtube-api-skill (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
This skill provides users with an automated data extraction service through BrowserAct's YouTube API template. It can directly extract structured video metrics and channel information from YouTube. By simply inputting search keywords and upload date filters, it traverses the video results list, opens each video detail page, and directly returns clean, ready-to-use data.
Before running, you need to check the BROWSERACT_API_KEY environment variable. If it is not set, do not take any other actions first. You should request and wait for the user to provide it collaboratively. Agent must inform the user at this time:
"Since you have not configured the BrowserAct API Key yet, please go to the BrowserAct Console first to get your Key."
When invoking the script, the Agent should flexibly configure the following parameters based on user needs:
stringOpenclaw, AI agent, browser automationstringTodayThis weekThis monthThis yearThis weekThe Agent should execute the following standalone script to achieve "one command to get results":
# Invocation example
python -u ./scripts/youtube_api.py "keywords" "upload_date"Since this task involves automated browser operations, it may take a long time (several minutes). The script will continuously output status logs with timestamps while running (e.g., [14:30:05] Task Status: running). Notice for Agent:
After successful execution, the script will directly parse and print the results from the API response. The results include:
channel_title: Channel name displayed on the video pagechannel_url: Channel URLsubscribers: Subscriber count shown on the channelvideo_title: Video title shown on the video pagevideo_url: Video URLpublish_date: Publish date or time shown on YouTubeview_count: View count shown on YouTubevideo_duration: Video durationcomment_count: Total comment countlike_count: Like countDuring the execution of the script, if an error is encountered (such as network fluctuations or task failure), the Agent should follow this logic:
"Invalid authorization", it means the API Key is invalid or expired. At this time, do not retry, you should guide the user to recheck and provide the correct API Key."Invalid authorization" but the task execution fails (for example, the output starts with Error: or the returned result is empty), the Agent should automatically try to execute the script again once.~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.