lov-wechat-article-branding-skill
Warn
Audited by Socket on Aug 24, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The claimed branding purpose is plausible, but the skill’s actual behavior is hidden behind an encrypted package plus a runtime decrypt helper, so its capabilities and data flows cannot be independently verified. Registry-based distribution reduces risk versus raw binaries, but the opaque payload, partial provenance ambiguity, and likely account-mediated decryption make the skill higher-risk than a normal content-editing skill.
Confidence: 82%Severity: 76%
Audit Metadata