Travel CN

PassAudited by VirusTotal on May 12, 2026.

Findings (1)

The skill is classified as suspicious due to its reliance on potentially risky capabilities, even though no direct malicious intent is evident. The `SKILL.md` file describes methods involving `pip install selenium` and `pip install py12306` for package installation, web scraping using Selenium, and the execution of local shell scripts (`./scripts/*.sh`). While these actions are presented as examples for the skill's stated purpose (travel information), they represent capabilities that, if not properly sandboxed or controlled by the AI agent's execution environment, could be exploited for unintended system access or resource consumption. There is no evidence of intentional data exfiltration, persistence, or malicious prompt injection.