jianying-audio

Warn

Audited by Socket on Sep 19, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill’s stated audio-editing purpose is coherent and its instructions are unusually conservative, but it relies on a preinstalled `jianying` CLI whose official publisher and release provenance could not be verified from the provided evidence. That unresolved external-binary trust issue is the dominant risk; data exfiltration and credential abuse signals are otherwise low.

Confidence: 85%Severity: 78%
Audit Metadata
Analyzed At
Sep 19, 2026, 11:56 PM
Package URL
pkg:socket/skills-sh/full-aigc-skills%2Fjianying-skills%2Fjianying-audio%2F@a313e373e8e3ec029b6dba8141d33e6ac162438cf2fc520f91c407c868ed7598
Security Audit — socket — jianying-audio