bilibili-video-downloader
Warn
Audited by Socket on Jul 27, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill's purpose matches video-link parsing, but its actual footprint centers on routing user URLs and API credentials through redfox.hk, an unrelated third-party intermediary rather than official Bilibili endpoints. There is no download-execute chain or obvious malware behavior, but the data-flow and trust model are not ideal and create medium security risk.
Confidence: 87%Severity: 58%
Audit Metadata