learn-artist
Audited by Socket on Mar 17, 2026
2 alerts found:
Obfuscated FileSecurityOverall, Report 1 provides the most comprehensive assessment among the three, correctly highlighting the multi-layered risk surface: external data sources, Dockerized processing, and internal monitoring communications. While the workflow itself is not inherently malicious, the integration points create significant supply-chain and operational security risks. Recommended mitigations include input validation and sanitization for all artist entries, narrowing and validating external tool outputs, restricting network exposure of the internal TASK_MONITOR_API, signing/verifying downloaded artifacts, implementing integrity checks for downloaded content, and auditing the Docker images and mounted volumes. Consider introducing a formal risk assessment and trust boundary model for all external scripts and dependencies.
SUSPICIOUS. The skill’s core purpose is coherent with media/RVC training, but its execution trust is disproportionate because it runs a third-party Docker image and depends on loosely verified external artifacts. No direct credential theft is evident, yet the black-box container, mutable tag pull, composed-skill trust chain, and autonomous download/execute behavior make this a high security-risk skill.