ziliu-publisher

Warn

Audited by Socket on Mar 17, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill’s functionality is broadly aligned with its stated purpose, but its core dependency is a self-hosted browser extension installed via developer mode from an unverifiable ZIP, and the data/credential flows are only partially documented. The main risk is install/execution trust and account-impacting browser automation rather than confirmed malicious behavior.

Confidence: 85%Severity: 80%
Audit Metadata
Analyzed At
Mar 17, 2026, 01:20 AM
Package URL
pkg:socket/skills-sh/aaaaqwq%2Fclaude-code-skills%2Fziliu-publisher%2F@db6dff456d806a3784e383e9b75fb8f03b360561