long-audio-transcript-processor

Warn

Audited by Socket on Mar 3, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The skill fragment is coherently aligned with its stated purpose of long audio transcript processing using a structured, stateful filesystem workflow. It operates locally without evident external network calls or credential handling, and it emphasizes traceability through append-only updates. The risk is primarily operational (misconfiguration, user error, or path issues) rather than security-related. It should be considered BENIGN with respect to supply-chain security, but ensure proper validation of input file paths and directory existence to prevent accidental data leakage or overwrites in real deployments.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 3, 2026, 02:08 AM
Package URL
pkg:socket/skills-sh/cafe3310%2Fpublic-agent-skills%2Flong-audio-transcript-processor%2F@5b8ce9cf99c458772e78772259cddb4492b9cd6a