Skip to main content

rss-ai-reader

Automates RSS feed subscriptions, generates summaries using LLM, and pushes updates via multiple channels like Feishu, Telegram, and Email.

Install this skill

or
86/100

Security score

The rss-ai-reader skill was audited on Feb 9, 2026 and we found 6 security issues across 3 threat categories. Review the findings below before installing.

Categories Tested

Security Issues

medium line 41

Template literal with variable interpolation in command context

SourceSKILL.md
41```yaml
low line 61

Webhook reference - potential data exfiltration

SourceSKILL.md
61webhook_url: "${FEISHU_WEBHOOK}"
medium line 68

Webhook reference - potential data exfiltration

SourceSKILL.md
68| **飞书** | `webhook_url` | 群机器人 Webhook |
low line 45

External URL reference

SourceSKILL.md
45url: "https://hnrss.org/frontpage"
low line 48

External URL reference

SourceSKILL.md
48url: "https://www.ruanyifeng.com/blog/atom.xml"
low line 109

External URL reference

SourceSKILL.md
109- **Buy Me a Coffee**: [buymeacoffee.com/benzema216](https://buymeacoffee.com/benzema216)
Scanned on Feb 9, 2026
View Security Dashboard
Installation guide →