Security audit
BizMuse Music Video
Security checks across malware telemetry and agentic risk
Overview
This skill is a coherent BizMuse music-video workflow that clearly discloses its CLI install, paid external service use, media uploads, and local API-key configuration.
Install only if you intend to use BizMuse and are comfortable with a global npm CLI, local API-key configuration, paid generation credits, and uploading the selected audio/images/prompts to BizMuse. Do not use private or third-party media unless you have the right to upload and process it.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
