Back to skill

Security audit

Zhihu Automation Skill

Security checks across malware telemetry and agentic risk

Overview

No artifact-backed suspicious behavior could be confirmed because the workspace artifacts could not be read in this run.

Do not treat this as a complete install approval; rerun the review when metadata.json and the artifact directory can be inspected.

VirusTotal

56/56 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

Detected: suspicious.dangerous_exec, suspicious.potential_exfiltration

Shell command execution detected (child_process).

Critical
Code
suspicious.dangerous_exec
Location
scripts/zhihu-bridge.js:33

Sensitive-looking file read is paired with a network send.

Warn
Code
suspicious.potential_exfiltration
Location
zhihu-api-update-v2.js:24

Sensitive-looking file read is paired with a network send.

Warn
Code
suspicious.potential_exfiltration
Location
zhihu-api-update.js:24

Sensitive-looking file read is paired with a network send.

Warn
Code
suspicious.potential_exfiltration
Location
zhihu-profile-check-v2.js:27

Sensitive-looking file read is paired with a network send.

Warn
Code
suspicious.potential_exfiltration
Location
zhihu-profile-check.js:25

Sensitive-looking file read is paired with a network send.

Warn
Code
suspicious.potential_exfiltration
Location
zhihu-search-api.js:15

Sensitive-looking file read is paired with a network send.

Warn
Code
suspicious.potential_exfiltration
Location
zhihu-topic-questions.js:15