Credential Access
High
- Category
- Privilege Escalation
- Content
requires_ffmpeg: false requires_ffprobe: false notes: >- Reads ~/.chanjing/credentials.json; may open browser if AK/SK missing. Upload path: GET create_upload_url then HTTPS PUT to API-returned sign_url (host may differ from open-api). Optional --callback URL may receive sensitive POST payloads from Chanjing.
- Confidence
- 82% confidence
- Finding
- The skill documents two behaviors that increase exposure: it may open a browser automatically when credentials are missing, and it uploads content to an API-returned sign_url whose host may differ from the primary API domain. Most importantly, the optional callback can cause sensitive task payloads to be POSTed to an arbitrary user-supplied endpoint, which creates a real data-exfiltration and trust-boundary risk if misused or configured unsafely.
