Weibo Browser Ops

Security checks across static analysis, malware telemetry, and agentic risk

Overview

This is a coherent instruction-only Weibo automation skill, but it can take public account actions, so users should confirm any posting, replying, deleting, or pinning activity.

This skill appears safe to install as an instruction-only Weibo helper, but it operates a real social-media account. Confirm the account, content, and targets before allowing posts, replies, deletions, pinning, or unpinning.

Static analysis

No static analysis findings were reported for this release.

VirusTotal

VirusTotal findings are pending for this skill version.

View on VirusTotal

Risk analysis

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

What this means

The agent could publish, reply, delete, pin, or unpin content on the user's Weibo account when directed.

Why it was flagged

These are public account actions performed through browser automation. They are central to the skill's purpose and partly gated by confirmation, but users should notice that the agent may change visible Weibo content.

Skill content
Draft and publish posts... Reply to comments and mentions... Clean up or pin/unpin posts (after confirmation)
Recommendation

Review the exact text and target content before approving any public or account-changing action, including replies.

What this means

Actions will occur under the logged-in user's Weibo identity.

Why it was flagged

The skill depends on the user's authenticated Weibo browser session. This is expected for Weibo operations and the artifact instructs the agent to pause for user login or verification rather than bypassing it.

Skill content
Let user complete login or secondary verification when required.
Recommendation

Only use this skill in the intended Weibo account session and log out or switch accounts if needed before running account-management tasks.