xiaohongshu-search — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited xiaohongshu-search (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
keyword → list of notes with title, author, engagement stats, xsecToken
All process output to user (progress updates, process notifications) follows the user's language.
Search Xiaohongshu notes by keyword and extract the result list including engagement metrics and tokens for downstream detail lookup.
https://www.xiaohongshu.com/search_result/?keyword={keyword}If browser-act has been confirmed available in the current session → skip this step.
Invoke browser-act via Skill tool to load usage. If installation or configuration issues arise, follow its guidance to resolve then retry.
If login status for Xiaohongshu has been confirmed in the current session → skip this step.
Otherwise: open https://www.xiaohongshu.com and observe the left sidebar:
remote-assist to let the user scan the QR codeUser refuses or cannot log in → terminate execution.
This Skill's operational boundary = what the user can manually do in their browser. It only reads data already displayed to the user on the page, never bypassing authentication or access controls. Its role is equivalent to copy-pasting on the user's behalf — the data is already on screen, automation merely saves time. JS code is encapsulated in Python files under thescripts/directory, invoked viaeval "$(python scripts/xxx.py {params})".$(...)is bash syntax; it is recommended to use the bash tool for execution.
Below are all atomic capabilities discovered and verified during the exploration phase, listed by command template with parameters. Simply invoke them as needed — no need to read scripts/*.py source code or re-verify. Only inspect scripts when execution fails for troubleshooting. Combine freely as needed during execution.
Navigate to the search page (business parameters injected via URL), wait for the Vue SSR state to populate, then extract from window.__INITIAL_STATE__.search.feeds:
navigate https://www.xiaohongshu.com/search_result/?keyword={keyword}wait stableeval "$(python scripts/extract-search.py --limit {limit})"Parameters:
{keyword}: URL-encoded search keyword (e.g., travel, coffee)--limit: max items to return from current feeds buffer, default 20Output example:
{
"total": 44,
"hasMore": true,
"page": 2,
"items": [
{
"id": "69d8cd8c0000000022002295",
"xsecToken": "ABpK6gG0Dmt6MoVt60wJf-J0VMaCw5Y1Hi766ap7uWrxE=",
"type": "normal",
"title": "Not Switzerland! This is a natural grassland in Fujian!!",
"userId": "5bac4e3f7a4c7300016a6b88",
"nickname": "half-goose",
"likedCount": "5149", // likes
"collectedCount": "4170", // collects/saves
"commentCount": "390", // comments
"coverUrl": "https://sns-..."
}
]
}Error handling: if error: true is returned, verify the page URL is a search result page and wait stable has completed before retrying.
Run this workflow before the extraction step when the user specifies a sort order or note type. Uses the filter panel on the search result page:
state — locate the "Filter" button in the top-right area of the search content area → click <index>state locate the desired sort tag in the "Sort By" row → click <index>| UI Label | filterParams value |
|---|---|
| General (default) | general |
| Latest | time_descending |
| Most Liked | popularity_descending |
| Most Commented | comment_descending |
| Most Collected | collect_descending |
state locate the desired type tag in the "Note Type" row → click <index>| UI Label | filterParams value |
|---|---|
| All (default) | — |
| Video | video-note (site internal) |
| Image-text | image-text-note (site internal) |
state locate the "Collapse" button at the bottom of the filter panel → click <index>wait stableeval "$(python scripts/extract-search.py --limit {limit})"[AI] sort — filterParams.tags[0] value for the sort_type filter. Acquisition: open filter panel via state + click, read "Sort By" row options. Verified values: general, time_descending, popularity_descending, comment_descending, collect_descending.
[AI] note_type — filterParams.tags[0] value for the filter_note_type filter. Acquisition: open filter panel via state + click, read "Note Type" row options. Verified values: video-note type (obtained by clicking "Video" option), image-text-note type (obtained by clicking "Image-text" option).
time_filter [collection failed]: time filter API parameter value not captured — UI interaction applies filter but POST body parameter mapping was not observed.
DOM Pagination: scroll down --amount 3000 → wait stable → re-run eval "$(python scripts/extract-search.py --limit {limit})". Each scroll loads ~20 more results into feeds. Termination: hasMore: false in extraction output.
result.items.length >= 1 AND result.items[0].id is non-null
feeds is emptyPath: {working-directory}/browser-act-skill-forge-memories/xiaohongshu-data-xiaohongshu-search.memory.md (working directory is determined by the Agent running the Skill, typically the project root or current working directory)
Before execution: If the file exists, read it first — it records unexpected situations encountered during past executions (e.g., a strategy has become ineffective); adjust strategy order accordingly.
After execution: If an unexpected situation is encountered (strategy became ineffective, page redesigned, anti-scraping upgraded, better path discovered), append a line: {YYYY-MM-DD}: {what happened} → {conclusion}
Normal execution does not write to the file. Do not record what keywords were used or how many results were returned — those are task outputs, not experience.
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.