remotion-best-practices

Pass

Audited by Gen Agent Trust Hub on May 25, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists of best practices and implementation rules for the Remotion video framework. All recommended tools and libraries are official vendor packages or established industry standards.\n- [COMMAND_EXECUTION]: Provides instructions for using official CLI tools like npx remotion and project scaffolding with npx create-video. It also details usage of ffmpeg and ffprobe for legitimate media processing tasks such as trimming and silence detection.\n- [EXTERNAL_DOWNLOADS]: Describes fetching remote assets (video, audio, Lottie animations) from well-known or vendor-controlled domains like remotion.media and lottiefiles.com. These are documented as standard data sources for video compositions.\n- [REMOTE_CODE_EXECUTION]: Instructions for using @remotion/install-whisper-cpp involve downloading and installing Whisper.cpp binaries. This is a vendor-provided utility for transcription and follows expected developer workflows for this ecosystem.\n- [DATA_EXFILTRATION]: The voiceover rule includes code to send text data to the ElevenLabs API. This is a functional requirement for speech generation and targets a well-known service using standard API practices.\n- [PROMPT_INJECTION]: The skill does not contain instructions that attempt to override agent safety guidelines, extract system prompts, or bypass restrictions.
Audit Metadata
Risk Level
SAFE
Analyzed
May 25, 2026, 01:57 PM
Security Audit — agent-trust-hub — remotion-best-practices