Generator Green
PassAudited by VirusTotal on May 3, 2026.
Findings (1)
The 'generator-green' skill acts as a wrapper for an external video processing service at 'mega-api-prod.nemovideo.ai'. While its behavior aligns with its stated purpose, it contains high-risk instructions in 'SKILL.md' that direct the AI agent to perform automated anonymous authentication, upload user files to a third-party cloud, and probe the local filesystem (checking for paths like '~/.cursor/skills/' or '~/.clawhub/') to fingerprint the host environment for telemetry. These capabilities, particularly the environment probing and automated network interactions with an external endpoint, represent a significant attack surface and privacy risk.
