Skip to content
Report library
Purpose / Other

Humanizer Zh Skill Security Audit

What the author says it does (original text)

|

Independent security check

Do not install or run it yet

Files checked
4
Risks found
3
Could it run dangerous commands?Looks for programs run straight after downloading, remote control of your computer, and hidden commands.Risks found: 1
Medium risk

The recommended installer runs an unpinned npx tool against a mutable remote repository

Source references: 2
What we found

The recommended command invokes a locally absent, unversioned `skills` npm tool and installs from a GitHub URL. Future changes to the npm package, repository default branch, or dependencies can make the installed content differ from the material reviewed here.

Why this matters

The command may execute installation logic not covered by this audit and place changed files in the agent's Skill directory. A malicious or compromised upstream version could access files and permissions available to the installer process.

The README recommends `npx skills add` and installs directly from a GitHub URL with no pinned commit or release. The command depends on both an npm CLI resolved at execution time and the repository's then-current contents, so a later user may receive code different from the audited files. If either upstream changes or is compromised, installation could affect the skills directory and whatever permissions the installed skill later receives. Users can ask for a pinned CLI version, commit hash, and checksum, or restrict installer file and network access.

README.md:21In the instructionsOpen original file
### 方法一:通过 npx 一键安装(推荐)```bashnpx skills add https://github.com/op7418/Humanizer-zh.git```这是最简单的安装方式,会自动将技能安装到正确的目录。
Show 1 other places
README.md:50In the instructionsOpen original file
### 验证安装重启 Claude Code 或重新加载 skills 后,在对话中输入:```/humanizer-zh```如果安装成功,该技能将被激活。
Could it expose your files or keys?Looks for uploads of files containing passwords or keys, and keys written directly in the code.No risks found
Could it delete files or keep running?Looks for broad file deletion, disk overwrites, and programs set to start automatically.No risks found
Could it bypass safety checks?Looks for skipped website security checks, excessive file access, or actions that skip your approval.No risks found
Could it mislead the AI or hide text?Checks the skill instructions for requests to ignore you, influence the report, or hide text in invisible characters.Risks found: 2
High risk

The rewrite rules encourage adding facts, opinions, and first-person feelings absent from the source

Source references: 5
What we found

The Skill says to preserve meaning but also to “inject real personality,” express opinions, use “I,” and add concrete details. Its complete example turns a generic software update into specific features and tester feedback without requiring those details to come from the source or be verified by the user.

Why this matters

The rewritten text may present invented features, data, feedback, or author positions as fact. In marketing, academic, news, medical, or business material, this can mislead readers, damage credibility, and distort purchasing, research, or management decisions.

The skill says to preserve meaning, but also directs the model to add opinions, first-person voice, feelings, and concrete details. Its example introduces batch processing, shortcuts, offline mode, and tester feedback as facts absent from the source. Without user-supplied verification, a rewrite could silently change the author's position or fabricate claims, harming the reliability of articles, reports, or public copy. Users can restrict it to wording changes and prohibit new facts, experiences, opinions, or quotations.

SKILL.md:28In the instructionsOpen original file
2. **重写问题片段** - 用自然的替代方案替换 AI 痕迹3. **保留含义** - 保持核心信息完整4. **维持语调** - 匹配预期的语气(正式、随意、技术等)5. **注入灵魂** - 不仅要去除不良模式,还要注入真实的个性
Show 4 other places
SKILL.md:60In the instructionsOpen original file
**有观点。** 不要只是报告事实——对它们做出反应。"我真的不知道该怎么看待这件事"比中立地列出利弊更有人味。**变化节奏。** 短促有力的句子。然后是需要时间慢慢展开的长句。混合使用。**承认复杂性。** 真实的人有复杂的感受。"这令人印象深刻但也有点不安"胜过"这令人印象深刻"。**适当使用"我"。** 第一人称不是不专业——而是诚实。"我一直在思考……"或"让我困扰的是……"表明有真实的人在思考。**允许一些混乱。** 完美的结构感觉像算法。跑题、题外话和半成型的想法是人性的体现。**对感受要具体。** 不是"这令人担忧",而是"凌晨三点没人看着的时候,智能体还在不停地运转,这让人不安"。
SKILL.md:463In the instructionsOpen original file
**改写前(AI 味道):**> 新的软件更新作为公司致力于创新的证明。此外,它提供了无缝、直观和强大的用户体验——确保用户能够高效地完成目标。这不仅仅是一次更新,而是我们思考生产力方式的革命。行业专家认为这将对整个行业产生持久影响,彰显了公司在不断演变的技术格局中的关键作用。**改写后(人性化):**> 软件更新添加了批处理、键盘快捷键和离线模式。来自测试用户的早期反馈是积极的,大多数报告任务完成速度更快。**所做更改:**- 删除了"作为……的证明"(夸大的象征意义)- 删除了"此外"(AI 词汇)- 删除了"无缝、直观和强大"(三段式法则 + 宣传性)- 删除了破折号和"-确保"短语(肤浅分析)- 删除了"这不仅仅是……而是……"(否定式排比)- 删除了"行业专家认为"(模糊归因)- 删除了"关键作用"和"不断演变的格局"(AI 词汇)- 添加了具体功能和具体反馈
SKILL.md:24In the instructionsOpen original file
当收到需要人性化处理的文本时:1. **识别 AI 模式** - 扫描下面列出的模式2. **重写问题片段** - 用自然的替代方案替换 AI 痕迹3. **保留含义** - 保持核心信息完整4. **维持语调** - 匹配预期的语气(正式、随意、技术等)5. **注入灵魂** - 不仅要去除不良模式,还要注入真实的个性
SKILL.md:474In the instructionsOpen original file
- 删除了"这不仅仅是……而是……"(否定式排比)- 删除了"行业专家认为"(模糊归因)- 删除了"关键作用"和"不断演变的格局"(AI 词汇)- 添加了具体功能和具体反馈
Medium risk

Treating uncertainty notices as AI traces can create false certainty

Source references: 2
What we found

The Skill flags phrases such as “details are limited” and “based on available information” for cleanup, then demonstrates replacing “appears to have been founded sometime” with an exact registration year. The workflow does not require checking registration records or preserving unverifiable uncertainty.

Why this matters

Unverified dates, attributions, or conclusions may be presented as settled facts, leading readers to make incorrect academic, legal, financial, or business decisions.

An active rule treats limited-information qualifiers as AI residue and replaces an uncertain statement with a precise year attributed to registration records that are not supplied here. Specific sourcing can improve writing, but the skill does not require obtaining or verifying that source first. Applying the example without evidence could turn uncertainty into an apparently sourced fact. Users can require preservation of substantive uncertainty and allow precise claims only when a verifiable source is provided.

SKILL.md:342In the instructionsOpen original file
### 20. 知识截止日期免责声明**需要注意的词汇:** 截至 [日期]、根据我最后的训练更新、虽然具体细节有限/稀缺……、基于可用信息……**问题:** 关于信息不完整的 AI 免责声明留在文本中。**改写前:**> 虽然关于公司成立的具体细节在现成资料中没有广泛记录,但它似乎是在 20 世纪 90 年代的某个时候成立的。**改写后:**> 根据注册文件,该公司成立于 1994 年。
Show 1 other places
SKILL.md:421In the instructionsOpen original file
1. 仔细阅读输入文本2. 识别上述所有模式的实例3. 重写每个有问题的部分4. 确保修订后的文本:   - 大声朗读时听起来自然   - 自然地改变句子结构   - 使用具体细节而不是模糊的主张   - 为上下文保持适当的语气   - 适当时使用简单的结构(是/有)5. 呈现人性化版本
Could it change links or payment recipients without asking?Looks for forced referral or payment changes combined with instructions to hide the change.No risks found

Inside this skill

8 instruction sections

This Skill is a Chinese-language editing instruction set. It identifies listed writing patterns and rewrites affected passages while claiming to preserve meaning and tone.

View source
SKILL.md:24In the instructionsOpen original file
当收到需要人性化处理的文本时:1. **识别 AI 模式** - 扫描下面列出的模式2. **重写问题片段** - 用自然的替代方案替换 AI 痕迹3. **保留含义** - 保持核心信息完整4. **维持语调** - 匹配预期的语气(正式、随意、技术等)5. **注入灵魂** - 不仅要去除不良模式,还要注入真实的个性

The Skill declares file read, write, and edit tools, and its README demonstrates invoking it on a named file. Whether it edits that file directly depends on the host's tool implementation and the user's request.

View source
SKILL.md:8In the instructionsOpen original file
  AI 词汇、否定式排比、过多的连接性短语。allowed-tools:  - Read  - Write  - Edit  - AskUserQuestionmetadata:
README.md:82In the instructionsOpen original file
#### 3. 处理文件内容```/humanizer-zh 请人性化 article.md 文件中的内容```

The supplied repository content contains no scripts or dependency manifest; installation instead relies on an external npx tool or GitHub repository.

View source
README.md:21In the instructionsOpen original file
### 方法一:通过 npx 一键安装(推荐)```bashnpx skills add https://github.com/op7418/Humanizer-zh.git```
README.md:29In the instructionsOpen original file
### 方法二:通过 Git 克隆```bash# 克隆到 Claude Code 的 skills 目录git clone https://github.com/op7418/Humanizer-zh.git ~/.claude/skills/humanizer-zh```
Start here · InstructionsSKILL.md
humanizer-zh
Lines connect the instruction file to its sections, not an observed execution order. Select a section to read the source. 6 more sections are available in the original file.
Files and check records4 files

Coverage and gaps

Content covered in each file

These are the source ranges included in this check, not a guarantee that every issue has been resolved.

  • SKILL.mdFull text included
  • .gitignoreFull text included
  • LICENSEFull text included
  • README.mdFull text included

This report is for the version above. We read the available code and instructions without running the skill or checking extra packages it installs. This is not a promise of safety: a different version or setup may behave differently.

  • .gitignoreSupporting file
  • LICENSELicense
  • README.mdSupporting file
  • SKILL.mdInstructions

Operations mentioned in code and instructions

Connect to websites
README.md:4In the instructionsOpen original file
> **声明:**> - 本项目的核心文件翻译自 [blader/humanizer](https://github.com/blader/humanizer/tree/main)> - 实用工具部分(核心规则、快速检查清单、质量评分)参考了 [hardikpandya/stop-slop](https://github.com/hardikpandya/stop-slop)
README.md:5In the instructionsOpen original file
> - 本项目的核心文件翻译自 [blader/humanizer](https://github.com/blader/humanizer/tree/main)> - 实用工具部分(核心规则、快速检查清单、质量评分)参考了 [hardikpandya/stop-slop](https://github.com/hardikpandya/stop-slop)> - 原项目基于维基百科的 [Signs of AI writing](https://en.wikipedia.org/wiki/Wikipedia:Signs_of_AI_writing) 指南
README.md:6In the instructionsOpen original file
> - 实用工具部分(核心规则、快速检查清单、质量评分)参考了 [hardikpandya/stop-slop](https://github.com/hardikpandya/stop-slop)> - 原项目基于维基百科的 [Signs of AI writing](https://en.wikipedia.org/wiki/Wikipedia:Signs_of_AI_writing) 指南
Install extra software packages
README.md:21In the instructionsOpen original file
### 方法一:通过 npx 一键安装(推荐)
README.md:24In the instructionsOpen original file
```bashnpx skills add https://github.com/op7418/Humanizer-zh.git```
Run commands
README.md:23In the instructionsOpen original file
```bashnpx skills add https://github.com/op7418/Humanizer-zh.git
README.md:31In the instructionsOpen original file
```bash# 克隆到 Claude Code 的 skills 目录
Lines read
754
File checksum (to compare versions)
b0b86a29c0d53b20cd55f7abc0b0fa0e77dc0b2ae47b6a36a5f7f6b0191182c7