claude-typer

Warn

Audited by Socket on Sep 15, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the stated purpose matches video rendering, but the skill routes prompt data through an unverified third-party website and executes remote npm-delivered tooling at runtime. No credential harvesting is evident, yet the combination of third-party remote rendering, mutable network dependency, and command passthrough makes this higher risk than a typical local-only media skill.

Confidence: 83%Severity: 63%
Audit Metadata
Analyzed At
Sep 15, 2026, 12:13 PM
Package URL
pkg:socket/skills-sh/vibe-motion%2Fskills%2Fclaude-typer%2F@975efa2e053f496282778d7bd6650bec935d492a8b7f533ab16defbef3b95070
Security Audit — socket — claude-typer