content-collector

Warn

Audited by Socket on Jun 16, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core Feishu collection workflow is coherent, but the skill relies on multiple unreviewed third-party skills and processes arbitrary external content before taking write actions. The main risks are transitive trust and indirect prompt injection, not confirmed malware or obvious credential theft.

Confidence: 100%Severity: 60%
Audit Metadata
Analyzed At
Jun 16, 2026, 11:10 AM
Package URL
pkg:socket/skills-sh/GPTtang%2Fskill-atlas%2Fcontent-collector%2F@9c07a96393a0defbde4aa5b83e2231be43415b0379fcbd52bbd2f9d3228f15e6
Security Audit — socket — content-collector