soia-pkm-clip-gzh
Warn
Audited by Socket on Jul 11, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill’s core behavior mostly matches its stated purpose, and network endpoints are largely official WeChat domains. However, it combines transitive skill installation, wildcard permissions, and manual collection of raw session cookies/tokens for non-official backend routes, which is broader and riskier than a standard API integration. This looks more like a high-risk archival tool than confirmed malware.
Confidence: 88%Severity: 74%
Audit Metadata