Summary
weread-ai-brain v1.0.2 passed all six phases of Sigil's automated security scan with no findings detected. The scan analyzed 3 files for install hooks, dangerous code patterns, network exfiltration, credential access, obfuscation, provenance, prompt injection, and skill security signals.
Package description: 微信读书/WeRead 专用阅读数据与笔记分析 skill。仅当用户明确提到“微信读书”或“WeRead”,并请求生成微信读书看板、微信读书 HTML 看板、微信读书书籍分析、微信读书跨书关联、微信读书导出笔记、微信读书阅读人格/MBTI 时使用。会通过用户提供的 WEREAD_API_KEY 读取书架、阅读统计、划线和个人想法;导出或打开本地文件前必须先说明内容与路径并取得用户确认。
v1.0.2
19 July 2026, 11:40 UTC
by Sigil Bot
Risk Score
0
Findings
0
Files Scanned
3
Provenance
No findings detected. This package passed all 3 file scans with a verdict of LOW RISK.
Badge
Markdown
[](https://sigilsec.ai/scans/D97F11A4-1CAA-4015-96E3-2FFC0B91059F)HTML
<a href="https://sigilsec.ai/scans/D97F11A4-1CAA-4015-96E3-2FFC0B91059F"><img src="https://sigilsec.ai/badge/clawhub/weread-ai-brain" alt="Sigil Scan"></a>Run This Scan Yourself
Scan your own packages
Run Sigil locally to audit any package before it touches your codebase.
Sigil Pro
Cloud scanning, AI investigation, web dashboard, and CI/CD integration. 14-day free trial.
Start free trial →Get threat intelligence and product updates
Security research, new threat signatures, and product updates. No spam.
Other clawhub scans
Believe this result is incorrect? Request a review or see our Terms of Service and Methodology.