remotion-render

Warn

Audited by Snyk on Feb 24, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).

  • Potentially malicious external URL detected (high risk: 0.90). The Quick Start instructs running "curl -fsSL https://cli.inference.sh | sh", which fetches and executes a remote install script from https://cli.inference.sh (with binaries from dist.inference.sh) as part of installing the required CLI, so remote code is executed at setup and the skill relies on that external content.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Feb 24, 2026, 07:49 AM