juejin

Warn

Audited by Socket on Jul 7, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill's read/publish behavior aligns with its stated Juejin purpose and there is no obvious malware or remote installer, but it relies on full account session cookies obtained through a third-party connector domain and can perform public posting on the user's behalf. That combination makes the skill medium risk even with confirmation gating.

Confidence: 82%Severity: 57%
Audit Metadata
Analyzed At
Jul 7, 2026, 01:01 PM
Package URL
pkg:socket/skills-sh/acedatacloud%2Fskills%2Fjuejin%2F@b6390eacc6f5972d132652c8b2a8ab9a412f130bc1f8abb4f36b547bccf3a64f
Security Audit — socket — juejin