Dlazy Jimeng I2v First Tail
Security checks across malware telemetry and agentic risk
Overview
This skill is a disclosed wrapper for a dLazy cloud video-generation CLI that uses an API key and uploads user-selected media to dLazy endpoints.
Before installing, review the @dlazy/cli package/source because execution depends on that external npm package. Use npx if you prefer not to keep a global install, and only pass private media files if you are comfortable uploading them to dLazy's service.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
