aris-feishu-notify
Warn
Audited by Socket on May 6, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
Overall suspicious-but-not-malicious. Push mode is coherent and low-risk: it reads a local config and posts notifications to Feishu's official webhook. Interactive mode increases risk because it depends on a third-party local bridge that mediates replies and may receive Feishu credentials during its separate setup, making the skill's full footprint broader than a simple notifier.
Confidence: 85%Severity: 58%
Audit Metadata