opusclip
Fail
Audited by Socket on Mar 1, 2026
1 alert found:
MalwareMalwareSKILL.md
HIGHMalwareHIGH
SKILL.md
The skill/specified CLI appears consistent with its stated purpose and contains no direct signs of malicious code in this document. The primary risks are standard: an OPUSCLIP_API_KEY in the environment grants access to a user's OpusClip account, using arbitrary webhook URLs can result in intentional or accidental exfiltration of clip data if misconfigured, and users should inspect the bundled scripts/opusclip before running to ensure no hidden download-execute actions. Overall there is no evidence of obfuscation or hidden backdoors in the provided text, but treat API keys and webhooks as sensitive and audit the actual scripts used to perform uploads.
Confidence: 95%Severity: 90%
Audit Metadata