Podcast Transcription Pipeline
Warn
Audited by Socket on Mar 29, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the advertised transcription capability is plausible, but the actual footprint centers on transitive skill installation through weakly verifiable CLIs and registry paths. The main concern is install-trust and inherited-permission risk, not confirmed malware or clearly malicious data exfiltration.
Confidence: 87%Severity: 74%
Audit Metadata