Smart Model Switcher
PassAudited by VirusTotal on May 14, 2026.
Findings (1)
The skill bundle describes a multi-provider model switcher that requires sensitive API keys for several LLM services (Bailian, MiniMax, GLM, Kimi). While the documentation (SKILL.md, README.md) claims to perform 'API Key validation' and 'Plan detection,' the actual implementation scripts (e.g., scripts/runtime-switch.ps1 and scripts/auto-monitor.ps1) are missing from the provided files. This lack of transparency regarding how credentials are handled, combined with the request for high-value secrets and the execution of background monitoring services, presents a potential risk for data exfiltration or unauthorized access.
