make-video

Warn

Audited by Socket on Jun 18, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the overall purpose is coherent for a video-production skill, and the main HyperFrames dependency appears to be official same-org tooling. However, the skill has a broad footprint: remote `npx` execution, optional API-key forwarding to external providers, web content ingestion with exec/write capabilities, Playwright capture, and especially transitive installation of additional skills. This is not clearly malicious, but it is higher-trust and broader-scope than a narrowly scoped local rendering skill.

Confidence: 84%Severity: 66%
Audit Metadata
Analyzed At
Jun 18, 2026, 01:53 PM
Package URL
pkg:socket/skills-sh/GoldLegendW80%2Fllm-video-maker%2Fmake-video%2F@6dc36dd0649885e30cc0cfc6f4e580d3b508601f772ba15b1b6a0d7f2afb8949
Security Audit — socket — make-video