ai-avatar-video

Warn

Audited by Socket on Apr 14, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The core capability is coherent with the stated purpose, and data appears to flow to the expected inference.sh platform, but the skill relies on an external CLI installer, forwards auth and user media to that CLI/platform, and includes unnecessary transitive skill-install commands. This looks more like a legitimate but medium-risk hosted-tool skill than confirmed malware.

Confidence: 82%Severity: 61%
Audit Metadata
Analyzed At
Apr 14, 2026, 09:11 AM
Package URL
pkg:socket/skills-sh/inference-sh%2Fagent-skills%2Fai-avatar-video%2F@038cac430503012c66e6ed6b3cc8cfe510872980
Security Audit — socket — ai-avatar-video