video-analyzer
Fail
Audited by Socket on Mar 10, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The Video Analyzer skill aligns with a privacy-minded, local video transcription and analytics workflow. Its core capabilities (download via yt-dlp, local transcription via whisper-cpp, and local analysis output) are coherent with the stated purpose. The main security concerns relate to unverifiable third-party brew taps for whisper-cpp and potential supply-chain risk if those binaries are not verifiably sourced. Otherwise, credential exposure, data exfiltration, or autonomous real-world actions are not evident. Overall, the risk is low to moderate (benign to mildly suspicious due to unverifiable dependency).
Confidence: 98%
Audit Metadata