wxwork-drive
Warn
Audited by Socket on Jul 30, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The business function is coherent, but the trust model is not: a minimally documented local wrapper reads raw enterprise credentials from `daemon.env` and sends them, plus file content, through a third-party relay outside the official WeChat Work API path. Because the core executable provenance is not documented or verifiable here, and it receives credentials, this skill carries high security risk even without proof of malicious intent.
Confidence: 90%Severity: 84%
Audit Metadata