remotion-render

Warn

Audited by Socket on Jun 12, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill’s overall behavior matches its stated purpose of remote Remotion rendering, and the primary data flow to inference.sh is expected. However, it relies on a transitive external skill/CLI install, broad Belt command permissions, and remote upload of user code; these are proportionate but raise medium trust and supply-chain concerns rather than indicating clear malicious intent.

Confidence: 100%Severity: 60%
Audit Metadata
Analyzed At
Jun 12, 2026, 07:37 PM
Package URL
pkg:socket/skills-sh/qu-skills%2Fskills%2Fremotion-render%2F@1877d82644a68066923fb8b40375221e9676d65300465f325fd4d1d34982d1f5
Security Audit — socket — remotion-render