wxmini-security-audit
Warn
Audited by Socket on May 17, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill’s stated purpose and included scripts are internally coherent and mostly local-only, but it materially relies on a manually supplied third-party executable from an unrelated source and equips the agent with security-audit capabilities. No direct credential theft or exfiltration is evident, so this is high security risk rather than confirmed malware.
Confidence: 87%Severity: 78%
Audit Metadata