knowledge-skill

Warn

Audited by Socket on Mar 16, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

该技能总体目的与能力基本一致:抓取内容、生成摘要/向量并写入数据库,未见明显恶意窃密或无关高危能力。主要风险在于执行未公开验证的本地脚本、依赖另一项未验证技能进行登录,以及将内容发送给外部模型服务处理;因此更适合判定为可疑/中风险,而非恶意。

Confidence: 84%Severity: 61%
Audit Metadata
Analyzed At
Mar 16, 2026, 07:25 AM
Package URL
pkg:socket/skills-sh/hwj123hwj%2Fcustom-skills%2Fknowledge-skill%2F@c99eb1b5af6d1a78c55d1de521ba0131d8e6162a