chatgpt-video-editing-setup

Pass

Audited by Gen Agent Trust Hub on Jul 26, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONCREDENTIALS_UNSAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses various shell commands to inspect local repositories, verify Git origins, and manage system tools. This includes the use of git for status checks, chmod for file permission management, and ln for registering agent skills.
  • [EXTERNAL_DOWNLOADS]: It downloads codebase content from GitHub repositories belonging to well-known organizations, specifically browser-use/video-use and heygen-com/hyperframes, as part of the environment initialization.
  • [REMOTE_CODE_EXECUTION]: The setup process involves running uv sync, bun install, and npx commands, which fetch and execute external packages and scripts from official registries to satisfy environment requirements.
  • [CREDENTIALS_UNSAFE]: The skill provides detailed instructions for managing the ELEVENLABS_API_KEY. It implements defensive measures to safeguard credentials, including logic to verify that .env files are ignored by version control and that their permissions are locked to 600.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 26, 2026, 10:26 AM
Security Audit — agent-trust-hub — chatgpt-video-editing-setup