ai-content-pipeline
Warn
Audited by Socket on May 17, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill's media-pipeline purpose broadly matches its commands, but its footprint relies on installing a separate CLI/skills chain and routing credentials plus all content through the belt/inference.sh intermediary. Because the supplied text does not establish verifiable CLI provenance and that CLI appears to receive credentials, this is a high security-risk skill even without clear evidence of confirmed malware.
Confidence: 80%Severity: 83%
Audit Metadata