Social Media Manager

PassAudited by VirusTotal on May 12, 2026.

Findings (1)

The skill bundle instructs the AI agent to execute direct `curl` commands for network communication and file uploads to `api.postiz.com`, as detailed in `SKILL.md`. It also requires the agent to handle a sensitive `API_KEY` for authentication. While these actions are necessary for the stated purpose of a social media manager, the direct execution of shell commands and handling of credentials represent a significant attack surface, potentially leading to vulnerabilities like shell injection if the agent's inputs are not rigorously sanitized. There is no evidence of intentional malicious behavior, but the high-risk capabilities warrant a 'suspicious' classification.