spark-video-episode

Warn

Audited by Socket on Jun 16, 2026

2 alerts found:

AnomalySecurity
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s capabilities largely match its stated video-production purpose and its user-approval gates are a strong mitigating control, so this is not confirmed malware. The main concern is the mandatory self-update via unverified git pull from whatever remote the local clone already trusts, plus broad execution of local scripts and unclear provenance of the model wrapper.

Confidence: 100%Severity: 60%
SecurityMEDIUM
references/spark-video-cast/SKILL.md
Audit Metadata
Analyzed At
Jun 16, 2026, 03:58 AM
Package URL
pkg:socket/skills-sh/modelstudioai%2Fskills%2Fspark-video-episode%2F@42dca7ff392d1c9223e4a7d433aca7b5e1d4e0b056488b590a9bcdcbc768c6b8
Security Audit — socket — spark-video-episode