explainer-video-guide

Warn

Audited by Socket on Apr 22, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill’s purpose and capabilities mostly align with explainer-video production, but it relies on an external CLI with unclear install provenance, forwards auth to that CLI, grants broad Bash access, and explicitly installs additional skills. This looks more like a risky orchestration skill than confirmed malware.

Confidence: 78%Severity: 72%
Audit Metadata
Analyzed At
Apr 22, 2026, 01:59 PM
Package URL
pkg:socket/skills-sh/inference-sh%2Fskills%2Fexplainer-video-guide%2F@6d4b405a1c523b112365f7d2f1d186314d4f02c6