wechat-automation

Warn

Audited by Socket on Aug 19, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the described behavior is broadly consistent with WeChat automation, but it grants an AI agent autonomous messaging/forwarding capability and handles private chat content with unclear destination controls. Installation appears to use the official OpenClaw ecosystem, yet the specific skill's provenance and payload transparency are weak, making this a medium-high security risk rather than confirmed malware.

Confidence: 76%Severity: 72%
Audit Metadata
Analyzed At
Aug 19, 2026, 07:49 PM
Package URL
pkg:socket/skills-sh/bighardperson%2Fcomputer-science-skills-collection%2Fwechat-automation%2F@5e8f8ae5357ec83df0fba78ba8ff662d2b6866853b19ad84a10f4c6ee1535732
Security Audit — socket — wechat-automation