google-veo
Warn
Audited by Socket on Aug 6, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: The stated purpose is coherent, but the skill’s footprint depends on transitive installation of third-party skills/CLI and routes prompts plus authentication through inference.sh/belt instead of official Google interfaces. Main concerns are supply-chain trust, credential forwarding to external tooling, and repeated skill-to-skill installation instructions rather than overt malware.
Confidence: 84%Severity: 74%
Audit Metadata