ai-voice-cloning

Fail

Audited by Snyk on Mar 19, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E005: Suspicious download URL detected in skill instructions.

  • Suspicious download URL detected (high risk: 0.80). These links are suspicious: two are nonstandard/placeholder hostnames (portrait.jpg, your-video.mp4) that obscure real destinations, and the others point to an unvetted third‑party service (inference.sh / cloud.inference.sh) which could distribute scripts or binaries (via .sh, npm packages, or hosted payloads) — downloading or executing from these sources poses a high malware risk.

Issues (1)

E005
CRITICAL

Suspicious download URL detected in skill instructions.

Audit Metadata
Risk Level
CRITICAL
Analyzed
Mar 19, 2026, 01:18 PM
Issues
1
Security Audit — snyk — ai-voice-cloning