tutor-general
Fail
Audited by Socket on Feb 27, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The provided SKILL.md documents a legitimate workflow for producing Motion Canvas narrated videos. There is no explicit malicious code or indicators of credential theft in the reviewed file. The primary security concern is supply-chain risk: executing unreviewed Python scripts and installing/running Node dependencies (including edge-tts) can run arbitrary code or contact external services. Before running, review the referenced scripts and lock/audit dependencies; treat execution in an isolated environment if processing sensitive data.
Confidence: 98%
Audit Metadata