Video Generation
Warn
Audited by Socket on Feb 25, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The skill fragment is internally consistent with its stated purpose of providing backend video generation workflows using the z-ai-web-dev-sdk. It describes reasonable backend usage, asynchronous task management, and data retrieval without introducing credential exposure, exfiltration, or client-side risk. The overall security posture appears benign with moderate risk due to standard backend API usage and potential misconfigurations in real deployments (e.g., exposing task endpoints); no malicious behavior is evident in the provided content.
Confidence: 75%Severity: 75%
Audit Metadata