lanhu-design

Fail

Audited by Socket on Mar 12, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The lanhu-design skill presents a coherent, purpose-aligned workflow for reading Lanhu URLs, resolving invites, obtaining prototype pages and designs, and producing AI-analyzed results, with team collaboration capabilities. The credential requirement (LANHU_COOKIE) is proportionate to authentic Lanhu API usage but introduces a reasonable credential exposure risk if mishandled. No unverifiable binaries or external exfiltration mechanisms are evident; the data flows stay within Lanhu APIs and user-facing outputs. Overall risk is moderate (securityRisk around 0.4) due to credential handling, with no evident malicious intent or supply-chain concerns.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 12, 2026, 10:12 AM
Package URL
pkg:socket/skills-sh/xu-cell%2Fai-engineering-init%2Flanhu-design%2F@d6a230d3e2a3ec89f3afc49b362bd8d2c3adc943