ai-marketing-videos

Fail

Audited by Socket on Mar 10, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill's footprint is broadly coherent with its stated purpose of generating marketing videos via a CLI workflow. There is normal use of external inference services and no explicit credential harvesting or malicious exfiltration. While there is inherent supply-chain risk associated with invoking multiple external binaries/tools (infsh and model endpoints), this is typical for a legitimate media-generation pipeline. The overall risk is moderate and primarily tied to external dependencies and data flows to third-party inference endpoints rather than internal credential access or destructive access. Proceed with caution around supply-chain trust and ensure all external tools are from verifiable registries and that data retention policies are understood for generated media prompts and assets.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 10, 2026, 09:32 PM
Package URL
pkg:socket/skills-sh/inference-shell%2Fskills%2Fai-marketing-videos%2F@0905f54bfa97b137185f753c8d4ce31bd98e7076