wechat-ai-radar
Warn
Audited by Socket on Jul 15, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: The skill's core automation matches its stated purpose, and its local installs are mostly normal, but it routes sensitive WeChat screenshot-derived content and the API key through a third-party aggregator rather than an official model provider. The main risk is privacy-sensitive data exfiltration via a non-official AI relay plus unattended recurring collection, not confirmed malware.
Confidence: 89%Severity: 78%
Audit Metadata