alicloud-security-content-moderation-green
Audited by Socket on Mar 11, 2026
1 alert found:
Obfuscated FileThe skill's footprint is broadly coherent with its stated purpose: it aims to discover and call Alibaba Cloud Green APIs using official OpenAPI/SDK channels, with credentials sourced from standard cloud credential locations. The primary security considerations are standard credential management (environment variables or credentials file) and careful handling of moderation results to avoid accidental leakage. There are no evident supply-chain or data exfiltration patterns. Overall, the skill is BENIGN with MEDIUM risk due to credential exposure potential and local artifact handling. Recommend enforcing strict credential handling, audit logs to avoid leaking secrets, and verifying output artifacts do not contain sensitive content before sharing.