bili-ai-feed

Warn

Audited by Socket on Jun 16, 2026

2 alerts found:

AnomalySecurity
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s general purpose is coherent, but trust and data-flow integrity are weakened by routing through a third-party provider with inconsistent auth documentation and unclear official Bilibili endpoint support. No confirmed malware or download-execute behavior is present, but the credential path and mandatory broad web research make this a medium-risk skill.

Confidence: 100%Severity: 60%
SecurityMEDIUM
references/investigator-config.json
Audit Metadata
Analyzed At
Jun 16, 2026, 08:46 AM
Package URL
pkg:socket/skills-sh/redfox-data%2Fredfox-community%2Fbili-ai-feed%2F@9a1c89bb06c3bcbc7ea689afce64786a6596a9fc01b32fd0225aaeec426ab6fb
Security Audit — socket — bili-ai-feed