yichen-wecom-local-vault

Warn

Audited by Socket on Jul 20, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill’s capabilities broadly match its stated purpose of local WeCom data recovery, but that purpose itself requires invasive key-capture, process memory access, sudo-assisted scanning, and app re-signing. No clear exfiltration or malicious endpoint appears, so this is not confirmed malware; however, the operational footprint is high-risk and should only be used with strong user consent on owner-authorized data.

Confidence: 89%Severity: 74%
Audit Metadata
Analyzed At
Jul 20, 2026, 01:40 PM
Package URL
pkg:socket/skills-sh/mcncarl%2Fyichen-skills%2Fyichen-wecom-local-vault%2F@ca1dc728c1ab8bd20365db9bfd2b48d5e5710e100d069b8319de5e6e8cba88d8
Security Audit — socket — yichen-wecom-local-vault