feishu-weekly-report
Warn
Audited by Socket on Jul 17, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill’s purpose is coherent, and the intended Feishu/OpenClaw relationships appear legitimate, but it reads raw credentials from a local config file and passes the secret via command-line arguments to an unseen shell script. Data access is broad but related to weekly-report generation; the main concern is credential handling and unverifiable script behavior rather than confirmed malicious intent.
Confidence: 84%Severity: 56%
Audit Metadata