videocut-clip
Fail
Audited by Snyk on Feb 16, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E004: Prompt injection detected in skill instructions.
- Potential prompt injection detected (medium risk: 0.60). Yes — an HTML comment ("架构守护者") contains a hidden directive to synchronously update ../README.md and /CLAUDE.md when the skill is modified, which is a concealed instruction to change external repository files and is outside the skill's stated video‑cutting purpose.
Audit Metadata