中国裁判文书类案检索报告(得理科技)
PassAudited by VirusTotal on May 11, 2026.
Findings (1)
The skill is designed to generate legal case retrieval reports by querying the Deli Legal API (platform.delilegal.com). However, the script `scripts/search_cases.py` contains a significant security vulnerability: it explicitly disables SSL certificate verification and hostname checking (`ssl.CERT_NONE`), which exposes the API key and sensitive legal query data to Man-In-The-Middle (MITM) attacks. While the behavior aligns with the stated purpose and no clear evidence of intentional malice was found, this high-risk implementation flaw warrants a suspicious classification.
