explainer-video-guide

Fail

Audited by Socket on Mar 8, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

Overall, the skill appears coherent with its stated purpose of guiding and orchestrating explainer-video production using an inference CLI. The primary security considerations center on the download-and-execute install pattern and unverifiable binary risk, which elevates caution but does not, in itself, prove malicious intent. The credential risk is minimal or non-existent per the supplied content. Treat the install method as a potential supply-chain risk and ensure verifyable, auditable binaries and checksums in practice. Overall risk is deemed suspicious-to-benign, leaning toward benign with notable supply-chain caution due to the download-and-run pattern.

Confidence: 98%Severity: 55%
Audit Metadata
Analyzed At
Mar 8, 2026, 02:51 AM
Package URL
pkg:socket/skills-sh/1nfsh-s3%2Fskills%2Fexplainer-video-guide%2F@573066fe5878deb42f966cf9763b2d27a97e17f7