bili-daily-update-check
Warn
Audited by Socket on Aug 24, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
The skill is mostly coherent with its stated Bilibili-to-Feishu daily sync purpose and uses official-service endpoints rather than an obvious exfiltration proxy. The main concerns are authenticated user-scoped writes through local project scripts and the combination of untrusted content ingestion with agent-authored Feishu updates, so this is better classified as suspicious/medium-risk rather than malicious.
Confidence: 81%Severity: 56%
Audit Metadata