Scan Report
5 /100
bilibili-transcribe-summary
B站视频转录与总结工具,支持官方字幕提取和硅基流动ASR转写
B站视频转录技能,功能声明与实现一致,无恶意行为,预扫描标记的IP为Chrome版本号属误报
Safe to install
可安全使用,无需额外限制
| Resource | Declared | Inferred | Status | Evidence |
|---|---|---|---|---|
| Filesystem | WRITE | WRITE | ✓ Aligned | scripts/bilibili_pipeline.mjs:writeFile calls |
| Network | WRITE | WRITE | ✓ Aligned | fetch() calls to bilibili.com and api.siliconflow.cn |
| Shell | NONE | NONE | — | 无shell调用 |
| Environment | READ | READ | ✓ Aligned | process.env.SILICONFLOW_API_KEY |
1 High 10 findings
High IP Address 硬编码 IP 地址
134.0.0.0 scripts/bilibili_pipeline.mjs:58 Medium External URL 外部 URL
https://cloud.siliconflow.cn/me/account/ak SKILL.md:4 Medium External URL 外部 URL
https://b23.tv/... SKILL.md:15 Medium External URL 外部 URL
https://www.bilibili.com/video/BV1R6PzzAE9k SKILL.md:68 Medium External URL 外部 URL
https://b23.tv/lsocHNd SKILL.md:80 Medium External URL 外部 URL
https://www.bilibili.com/video/$ scripts/bilibili_pipeline.mjs:46 Medium External URL 外部 URL
https://www.bilibili.com/ scripts/bilibili_pipeline.mjs:66 Medium External URL 外部 URL
https://api.bilibili.com/x/player/v2?bvid=$ scripts/bilibili_pipeline.mjs:287 Medium External URL 外部 URL
https://api.siliconflow.cn/v1/audio/transcriptions scripts/bilibili_pipeline.mjs:361 Medium External URL 外部 URL
https://nodejs.org/ setup.md:27 File Tree
3 files · 19.1 KB · 687 lines JavaScript 1f · 501L
Markdown 2f · 186L
├─
▾
scripts
│ └─
bilibili_pipeline.mjs
JavaScript
├─
setup.md
Markdown
└─
SKILL.md
Markdown
Security Positives
✓ 功能声明(SKILL.md)与代码实现完全一致
✓ 所有网络请求目标均为声明的B站和硅基流动域名
✓ 文件写入仅限于用户指定的output目录
✓ API密钥仅用于本地认证,无外传行为
✓ 代码结构清晰,无混淆或隐藏逻辑
✓ Node.js版本检查确保环境兼容性