Zhihu CLI

Security checks across malware telemetry and agentic risk

Overview

This skill is coherent for a Zhihu CLI, but it asks users to extract and store live Zhihu session cookies without enough security guidance.

Install only if you trust this tool with your logged-in Zhihu session. Treat the cookie like a password, verify the npm package and publisher before running it, use a dedicated browser profile if possible, restrict or delete ~/.zhihu-cookie after use, and log out or revoke sessions if the cookie may have been exposed.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (2)

Missing User Warnings

Medium
Confidence
89% confidence
Finding
The documentation instructs users to auto-extract Zhihu cookies from Chrome and notes elsewhere that the cookie is stored persistently, but it does not clearly warn that session cookies are sensitive authentication credentials equivalent to account access. In a skill that performs authenticated actions, this increases the risk of credential mishandling, accidental disclosure, or insecure local storage practices.

Missing User Warnings

Medium
Confidence
93% confidence
Finding
The manual setup flow asks users to paste a raw cookie string but does not state that this value is a bearer credential that can be used to impersonate the user if exposed. Combined with local persistence in ~/.zhihu-cookie, this can lead to credential leakage through shell history, screenshots, logs, or weak filesystem protections.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal