wewrite-wechat-ai-publishing
Warn
Audited by Socket on Mar 27, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill is broadly aligned with its stated WeChat publishing purpose, and the requested credentials are proportionate. However, it grants an AI agent autonomous publishing capability and mixes untrusted web content ingestion with file-writing and external publication, creating meaningful action-abuse and prompt-injection risk. Supply-chain risk is present but not strongly suspicious from the text alone.
Confidence: 81%Severity: 62%
Audit Metadata