weibo

Warn

Audited by Socket on Jul 5, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The core capability matches the stated purpose, and there is no remote installer or obvious credential exfiltration path. However, the skill relies on full session cookies, can take real public actions, uses a loose /tmp script-discovery fallback, and the publisher admits the flow is not E2E-verified with limited independent documentation for the connector/cookie-capture path.

Confidence: 86%Severity: 56%
Audit Metadata
Analyzed At
Jul 5, 2026, 03:54 PM
Package URL
pkg:socket/skills-sh/acedatacloud%2Fskills%2Fweibo%2F@39febf21f8d2d415b02583e01823c62109f9f3e43bb57033a141d8423c30d47e
Security Audit — socket — weibo