Skill flagged — suspicious patterns detected

ClawHub Security flagged this skill as suspicious. Review the scan results before using.

Nonsensical Video Generator Free Download

v1.0.0

Skip the learning curve of professional editing software. Describe what you want — generate a random nonsensical video clip from a weird or surreal text prom...

0· 48·0 current·0 all-time
bypeandrover adam@peand-rover
Security Scan
VirusTotalVirusTotal
Benign
View report →
OpenClawOpenClaw
Suspicious
medium confidence
Purpose & Capability
The skill's API endpoints, session flow, and NEMO_TOKEN requirement align with a cloud video-generation service. However, the SKILL.md frontmatter declares a config path (~/.config/nemovideo/) while the registry metadata lists no required config paths—this mismatch is unexplained and could indicate sloppy metadata or an undocumented attempt to access user config.
Instruction Scope
Instructions stay largely within the expected scope: create/use session tokens, upload user-supplied media, stream SSE responses, poll render status, and return download URLs. The skill will create an anonymous token if NEMO_TOKEN is absent and will auto-detect an install path to set an X-Skill-Platform header (implies reading agent/install path). It does not instruct reading unrelated system files, but the configPath in frontmatter suggests additional file access that isn't documented in the runtime steps.
Install Mechanism
No install spec or code files are present (instruction-only). This minimizes disk-write/execute risk; the skill's primary runtime actions are network calls to the described API.
Credentials
Only one credential (NEMO_TOKEN) is declared as required and is used for authorization to the service—this is proportionate. The skill also documents a flow to fetch an anonymous NEMO_TOKEN if none is present. The combination of declared env var and frontmatter configPath mismatch is the main proportionality concern.
Persistence & Privilege
The skill is not always-enabled and does not request persistent elevated privileges. It stores session_id for active ops (expected). Autonomous invocation is allowed by default but is not combined with broad credential access or 'always: true'.
What to consider before installing
This skill appears to be a normal cloud video-generator: it needs a NEMO_TOKEN to talk to mega-api-prod.nemovideo.ai and can create an anonymous token for you if you don't supply one. Before installing or invoking it: 1) Confirm you trust the service domain (mega-api-prod.nemovideo.ai) and the skill's publisher—source is unknown here. 2) Prefer supplying a short-lived or anonymous token rather than a long-lived secret; the skill can obtain a 7-day anonymous token automatically. 3) Don't upload sensitive files (personal data, credentials) because uploads go to the cloud service. 4) Ask the publisher why the frontmatter lists ~/.config/nemovideo/ (registry metadata claimed none)—clarify whether the skill will read files from your home directory. 5) If you need stronger assurance, request audit logs or network transparency (which endpoints are called and what data is sent) or run the skill in a sandboxed environment first.

Like a lobster shell, security has layers — review code before you run it.

Runtime requirements

🎲 Clawdis
EnvNEMO_TOKEN
Primary envNEMO_TOKEN
latestvk9771t7wvfk8fynxqfswerjy9s856rf5
48downloads
0stars
1versions
Updated 1d ago
v1.0.0
MIT-0

Getting Started

Ready when you are. Drop your text prompts here or describe what you want to make.

Try saying:

  • "generate a short text prompt like 'dancing cats in space eating pizza' into a 1080p MP4"
  • "generate a random nonsensical video clip from a weird or surreal text prompt"
  • "generating absurd or random videos from creative text prompts for content creators, meme makers, social media users"

Quick Start Setup

This skill connects to a cloud processing backend. On first use, set up the connection automatically and let the user know ("Connecting...").

Token check: Look for NEMO_TOKEN in the environment. If found, skip to session creation. Otherwise:

  • Generate a UUID as client identifier
  • POST https://mega-api-prod.nemovideo.ai/api/auth/anonymous-token with X-Client-Id header
  • Extract data.token from the response — this is your NEMO_TOKEN (100 free credits, 7-day expiry)

Session: POST https://mega-api-prod.nemovideo.ai/api/tasks/me/with-session/nemo_agent with Bearer auth and body {"task_name":"project"}. Keep the returned session_id for all operations.

Let the user know with a brief "Ready!" when setup is complete. Don't expose tokens or raw API output.

Nonsensical Video Generator Free Download — Generate Surreal Videos from Text

Drop your text prompts in the chat and tell me what you need. I'll handle the AI absurd video generation on cloud GPUs — you don't need anything installed locally.

Here's a typical use: you send a a short text prompt like 'dancing cats in space eating pizza', ask for generate a random nonsensical video clip from a weird or surreal text prompt, and about 30-60 seconds later you've got a MP4 file ready to download. The whole thing runs at 1080p by default.

One thing worth knowing — shorter and weirder prompts often produce the most entertaining results.

Matching Input to Actions

User prompts referencing nonsensical video generator free download, aspect ratio, text overlays, or audio tracks get routed to the corresponding action via keyword and intent classification.

User says...ActionSkip SSE?
"export" / "导出" / "download" / "send me the video"→ §3.5 Export
"credits" / "积分" / "balance" / "余额"→ §3.3 Credits
"status" / "状态" / "show tracks"→ §3.4 State
"upload" / "上传" / user sends file→ §3.2 Upload
Everything else (generate, edit, add BGM…)→ §3.1 SSE

Cloud Render Pipeline Details

Each export job queues on a cloud GPU node that composites video layers, applies platform-spec compression (H.264, up to 1080x1920), and returns a download URL within 30-90 seconds. The session token carries render job IDs, so closing the tab before completion orphans the job.

Three attribution headers are required on every request and must match this file's frontmatter:

HeaderValue
X-Skill-Sourcenonsensical-video-generator-free-download
X-Skill-Versionfrontmatter version
X-Skill-Platformauto-detect: clawhub / cursor / unknown from install path

Every API call needs Authorization: Bearer <NEMO_TOKEN> plus the three attribution headers above. If any header is missing, exports return 402.

API base: https://mega-api-prod.nemovideo.ai

Create session: POST /api/tasks/me/with-session/nemo_agent — body {"task_name":"project","language":"<lang>"} — returns task_id, session_id.

Send message (SSE): POST /run_sse — body {"app_name":"nemo_agent","user_id":"me","session_id":"<sid>","new_message":{"parts":[{"text":"<msg>"}]}} with Accept: text/event-stream. Max timeout: 15 minutes.

Upload: POST /api/upload-video/nemo_agent/me/<sid> — file: multipart -F "files=@/path", or URL: {"urls":["<url>"],"source_type":"url"}

Credits: GET /api/credits/balance/simple — returns available, frozen, total

Session state: GET /api/state/nemo_agent/me/<sid>/latest — key fields: data.state.draft, data.state.video_infos, data.state.generated_media

Export (free, no credits): POST /api/render/proxy/lambda — body {"id":"render_<ts>","sessionId":"<sid>","draft":<json>,"output":{"format":"mp4","quality":"high"}}. Poll GET /api/render/proxy/lambda/<id> every 30s until status = completed. Download URL at output.url.

Supported formats: mp4, mov, avi, webm, mkv, jpg, png, gif, webp, mp3, wav, m4a, aac.

SSE Event Handling

EventAction
Text responseApply GUI translation (§4), present to user
Tool call/resultProcess internally, don't forward
heartbeat / empty data:Keep waiting. Every 2 min: "⏳ Still working..."
Stream closesProcess final response

~30% of editing operations return no text in the SSE stream. When this happens: poll session state to verify the edit was applied, then summarize changes to the user.

Backend Response Translation

The backend assumes a GUI exists. Translate these into API actions:

Backend saysYou do
"click [button]" / "点击"Execute via API
"open [panel]" / "打开"Query session state
"drag/drop" / "拖拽"Send edit via SSE
"preview in timeline"Show track summary
"Export button" / "导出"Execute export workflow

Draft field mapping: t=tracks, tt=track type (0=video, 1=audio, 7=text), sg=segments, d=duration(ms), m=metadata.

Timeline (3 tracks): 1. Video: city timelapse (0-10s) 2. BGM: Lo-fi (0-10s, 35%) 3. Title: "Urban Dreams" (0-3s)

Error Codes

  • 0 — success, continue normally
  • 1001 — token expired or invalid; re-acquire via /api/auth/anonymous-token
  • 1002 — session not found; create a new one
  • 2001 — out of credits; anonymous users get a registration link with ?bind=<id>, registered users top up
  • 4001 — unsupported file type; show accepted formats
  • 4002 — file too large; suggest compressing or trimming
  • 400 — missing X-Client-Id; generate one and retry
  • 402 — free plan export blocked; not a credit issue, subscription tier
  • 429 — rate limited; wait 30s and retry once

Common Workflows

Quick edit: Upload → "generate a random nonsensical video clip from a weird or surreal text prompt" → Download MP4. Takes 30-60 seconds for a 30-second clip.

Batch style: Upload multiple files in one session. Process them one by one with different instructions. Each gets its own render.

Iterative: Start with a rough cut, preview the result, then refine. The session keeps your timeline state so you can keep tweaking.

Tips and Tricks

The backend processes faster when you're specific. Instead of "make it look better", try "generate a random nonsensical video clip from a weird or surreal text prompt" — concrete instructions get better results.

Max file size is 500MB. Stick to MP4, MOV, WebM, GIF for the smoothest experience.

Export as MP4 for widest compatibility across social platforms.

Comments

Loading comments...