ai-marketing-videos
Audited by Socket on Mar 10, 2026
1 alert found:
Obfuscated FileThe skill's footprint is broadly coherent with its stated purpose of generating marketing videos via a CLI workflow. There is normal use of external inference services and no explicit credential harvesting or malicious exfiltration. While there is inherent supply-chain risk associated with invoking multiple external binaries/tools (infsh and model endpoints), this is typical for a legitimate media-generation pipeline. The overall risk is moderate and primarily tied to external dependencies and data flows to third-party inference endpoints rather than internal credential access or destructive access. Proceed with caution around supply-chain trust and ensure all external tools are from verifiable registries and that data retention policies are understood for generated media prompts and assets.