ai-short-drama

Warn

Audited by Socket on May 17, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill’s capabilities mostly align with its stated purpose of AI short-drama creation, and the Dreamina/Jimeng integration appears product-consistent. However, it uses a pipe-to-shell installer for a proprietary CLI without strong public release verification, then relies on that CLI for authenticated, cost-bearing remote actions. The main concern is install/execution trust and black-box dependency risk, not clear malicious intent or credential theft.

Confidence: 83%Severity: 74%
Audit Metadata
Analyzed At
May 17, 2026, 01:40 PM
Package URL
pkg:socket/skills-sh/A-cat-with-carrots%2Fai-short-drama-skill%2Fai-short-drama%2F@32a3ff8fbd981a23082804cabe441e77a9b4ffc7
Security Audit — socket — ai-short-drama