daily-report
Fail
Audited by Socket on Mar 8, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill concept aligns with automated daily reporting and Feishu-based content management, and the described workflow is coherent with its purpose. However, there are security concerns primarily around hard-coded credentials in the configuration samples (node_token/space_id) and potential exposure of sensitive tokens through documentation and logs. Network interactions with Feishu/image APIs are expected, but require strong secret management and endpoint validation. Overall risk isMedium (securityRisk ~0.55) with notable credential-exposure and secret-management improvements needed before deployment.
Confidence: 98%
Audit Metadata