motion-graphics

Warn

Audited by Socket on Aug 20, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s motion-graphics purpose is coherent, but it asks the agent to silently run remote same-org updates and refresh dependent skills before use. The main risks are unpinned `npx` execution, transitive skill installation, and autonomous processing of untrusted external content; there is no clear evidence of credential harvesting or malicious exfiltration.

Confidence: 84%Severity: 61%
Audit Metadata
Analyzed At
Aug 20, 2026, 03:24 AM
Package URL
pkg:socket/skills-sh/heygen-com%2Fhyperframes%2Fmotion-graphics%2F@a32804d310739249820f9128dc37917641f8efa1e0d5326777a47225b3681e27
Security Audit — socket — motion-graphics