Security audit
bailian-tts
Security checks across malware telemetry and agentic risk
Overview
The skill is coherent for generating TTS audio, but users should knowingly install the global npm CLI and protect the Bailian API key and any text sent to the service.
This appears safe for its stated purpose if you intend to use Alibaba Bailian TTS. Before installing, verify the @hackerpl/bailian-cli npm package, use a protected Bailian API key, and do not send sensitive text for speech generation unless you are comfortable with it being processed by the external service.
VirusTotal
65/65 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
