ai-avatar-video
Warn
Audited by Socket on Apr 16, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The core capability is coherent with the stated purpose, and data appears to flow to the expected inference.sh platform, but the skill relies on an external CLI installer, forwards auth and user media to that CLI/platform, and includes unnecessary transitive skill-install commands. This looks more like a legitimate but medium-risk hosted-tool skill than confirmed malware.
Confidence: 82%Severity: 61%
Audit Metadata