wemp-operator
Warn
Audited by Socket on Mar 17, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the stated purpose matches公众号运营 tasks, but the trust chain is incomplete because the required 'wemp' skill is not identified or verifiable. The main risks are unspecified backend/API provenance and the ability to take public-facing reply actions after consuming untrusted external content; there is no direct evidence of malware or credential theft in the provided snippet.
Confidence: 80%Severity: 57%
Audit Metadata