Transcription Automation

Warn

Audited by Socket on Jun 3, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the transcription purpose broadly matches the described capabilities, and the named vendors are legitimate, but the unverified media-mcp intermediary creates unclear install/data-flow trust. This is not overtly malicious, yet it is riskier than a direct-to-official-API transcription skill because uploaded media and possibly credentials may pass through an unverifiable MCP layer.

Confidence: 83%Severity: 57%
Audit Metadata
Analyzed At
Jun 3, 2026, 02:53 PM
Package URL
pkg:socket/skills-sh/claude-office-skills%2Fskills-hub%2Ftranscription-automation%2F@cd2f29c17dfaefb5f255e82d397a756dd72a5661
Security Audit — socket — Transcription Automation