ClawAudit verdict
wx-mp-publish
The skill appears to be a simple WeChat public article publisher with no suspicious capabilities or behaviors.
⚠ Flagged for review — coarse, uncorroborated signal, not a confirmed exploit. Review the config yourself before installing.
Automated static analysis — not a human review. ClawAudit flags capabilities, not confirmed intent, and can produce false positives. Disagree with this verdict? Use Dispute below.
Permission integrity
package_install
Findings (3)
Pipe to python — executes piped content as Python code
references/best-practices.md · prose · downgraded · | Python
Possible hardcoded credential
scripts/rebuild-drafts-full.js · prose · downgraded · secret=' + appSecret);
if (body.errcode) throw new Error(body.errmsg);
retur
Node http/https module — low-level network access
scripts/rebuild-drafts-full.js · prose · downgraded · require('https')
Permissions & capabilities
No declared permissions — minimal attack surface.
package_install Is this flag fair?
Thanks — recorded.