lov-wechat-article-branding-skill

Warn

Audited by Socket on Aug 24, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The claimed branding purpose is plausible, but the skill’s actual behavior is hidden behind an encrypted package plus a runtime decrypt helper, so its capabilities and data flows cannot be independently verified. Registry-based distribution reduces risk versus raw binaries, but the opaque payload, partial provenance ambiguity, and likely account-mediated decryption make the skill higher-risk than a normal content-editing skill.

Confidence: 82%Severity: 76%
Audit Metadata
Analyzed At
Aug 24, 2026, 12:56 AM
Package URL
pkg:socket/skills-sh/lovstudio%2Fskills%2Flov-wechat-article-branding-skill%2F@7a75ac5c4efa549e7e1ea5b5149b42a881db771219f0d3848c053e82c581cd8d
Security Audit — socket — lov-wechat-article-branding-skill