ai-content-pipeline
Warn
Audited by Socket on Sep 8, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the media-pipeline capability fits the stated purpose, but the skill’s main footprint is delegated through transitive skill installation and a remotely installed CLI that can receive credentials and upload data. The install path appears officially documented within the same product ecosystem, which lowers malware confidence, but the repeated skill-to-skill installation and credential-bearing external CLI make the overall risk medium-high.
Confidence: 89%Severity: 74%
Audit Metadata