remotion
Pass
Audited by Gen Agent Trust Hub on Mar 24, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill automates the installation of official Remotion dependencies (
remotion,@remotion/cli,@remotion/player,@remotion/google-fonts) and uses the officialcreate-videoproject initializer vianpxandnpm. These are standard, well-known development tools. - [COMMAND_EXECUTION]: The skill provides utility shell scripts (
init-remotion.sh,render-all.sh) for automating file system setup and the rendering process. These scripts perform expected operations such as directory creation and invoking the Remotion CLI. - [DATA_EXFILTRATION]: No unauthorized network requests, hardcoded credentials, or access to sensitive local configuration files (e.g., SSH keys, AWS credentials) were detected.
- [PROMPT_INJECTION]: The instructions focus on technical guidance for video production and do not contain attempts to override agent safety filters or system behavior.
- [REMOTE_CODE_EXECUTION]: No patterns of downloading and executing untrusted scripts (such as
curl | bashfrom unknown domains) were found. The skill relies on local scripts and standard package managers.
Audit Metadata