ai-content-pipeline

Warn

Audited by Socket on May 17, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill's media-pipeline purpose broadly matches its commands, but its footprint relies on installing a separate CLI/skills chain and routing credentials plus all content through the belt/inference.sh intermediary. Because the supplied text does not establish verifiable CLI provenance and that CLI appears to receive credentials, this is a high security-risk skill even without clear evidence of confirmed malware.

Confidence: 80%Severity: 83%
Audit Metadata
Analyzed At
May 17, 2026, 08:04 PM
Package URL
pkg:socket/skills-sh/inference-skills%2Fskills%2Fai-content-pipeline%2F@466443093e80200c8b5cda095ac9d04ea3d04527
Security Audit — socket — ai-content-pipeline