wechat-ai-radar

Warn

Audited by Socket on Jul 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The skill's core automation matches its stated purpose, and its local installs are mostly normal, but it routes sensitive WeChat screenshot-derived content and the API key through a third-party aggregator rather than an official model provider. The main risk is privacy-sensitive data exfiltration via a non-official AI relay plus unattended recurring collection, not confirmed malware.

Confidence: 89%Severity: 78%
Audit Metadata
Analyzed At
Jul 15, 2026, 07:58 AM
Package URL
pkg:socket/skills-sh/aaaaqwq%2Fclaude-code-skills%2Fwechat-ai-radar%2F@a4016d4e1e6f532b2d301ec445037c8c7235225db4fdd1c75f31070bb6643726
Security Audit — socket — wechat-ai-radar