create-product-hypermotion-with-specs

Pass

Audited by Gen Agent Trust Hub on Jul 10, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill downloads static font files from a public GitHub repository and fetches brand assets (images and logos) from user-provided URLs as part of its core functionality. These operations target well-known services or intended data sources.
  • [COMMAND_EXECUTION]: The workflow involves executing system commands such as ffmpeg, ffprobe, and curl. These tools are used for video processing, asset downloading, and metadata verification, aligning with the skill's purpose.
  • [CREDENTIALS_UNSAFE]: The skill requires a FAL_API_KEY, which it correctly instructs the user to store in a .env file at the repository root, following standard security practices for local development environments.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 10, 2026, 03:06 PM
Security Audit — agent-trust-hub — create-product-hypermotion-with-specs