This skill does publish WeChat drafts as described, but it stores WeChat account secrets in a plaintext local config file without strong protection or warning.
Install only if you intend to let this skill use WeChat official-account credentials and upload selected article content/images to WeChat. Prefer passing credentials at runtime instead of using --save-config; if you do save them, protect and exclude artifact/scripts/.wechat-config.json from backups and version control. Review the generated draft and remove or customize the fixed “有用AI” footer and disclaimer rule if they do not match your account.