motion-sv

Warn

Audited by Socket on Mar 13, 2026

1 alert found:

Anomaly
AnomalyLOW
static/r/hero-video-dialog.json

The fragment is a UI component for a hero video dialog with configurable animation and external media sources. No explicit malicious behavior is evident within this isolated fragment. Security considerations should focus on ensuring videoSrc/thumbnailSrc come from trusted sources, applying appropriate CSP/frame sandboxing, and addressing accessibility concerns in integration. Recommended follow-ups include validating animationStyle inputs, ensuring default-safe behavior for unknown styles, and auditing consumer code for proper handling of untrusted iframe content.

Confidence: 61%Severity: 60%
Audit Metadata
Analyzed At
Mar 13, 2026, 09:03 AM
Package URL
pkg:socket/skills-sh/sikandarjodd%2Fanimations%2Fmotion-sv%2F@fd372befc18fff7d567e22de6d6ae0545ab82297