xiaohongshu-search

Warn

Audited by Socket on Jun 15, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s purpose broadly matches its capabilities, and its local Node execution is ordinary, but the core data flow depends on a non-official third-party intermediary (Guaikei) that receives both token and search data. The main risk is credential/query forwarding and weak transparency around the actual API path, not confirmed malware.

Confidence: 100%Severity: 60%
Audit Metadata
Analyzed At
Jun 15, 2026, 10:17 AM
Package URL
pkg:socket/skills-sh/aiskillstore%2Fmarketplace%2Fxiaohongshu-search%2F@81e60f3b1d034bd0e7ac4547617c35157f8f18870f4fb4d08de7a1dea3fb959c
Security Audit — socket — xiaohongshu-search