feature-video

Fail

Audited by Socket on Mar 3, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

Benign overall with moderate supply-chain risk due to multi-tool dependency usage and remote asset uploads. The code fragment outlines a legitimate workflow for producing feature walkthrough videos and embedding them in PRs. There is no evidence of hardcoded secrets, covert data exfiltration, or malicious backdoors. However, because the workflow performs remote uploads and PR edits, it should be executed with user consent and restricted to trusted environments. Ensure proper access controls for rclone destinations and validate that PR updates are intended by the user.

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Mar 3, 2026, 11:54 AM
Package URL
pkg:socket/skills-sh/udecode%2Fplate%2Ffeature-video%2F@5e82739680660fd3583345861f4cf2a88a7821c1