Security audit
p-video-avatar
Security checks across malware telemetry and agentic risk
Overview
This skill is a disclosed Pruna API workflow for generating talking-head avatar videos from user-provided media and scripts.
Before installing, understand that using the skill sends selected portraits, narration, scripts, and generated outputs to Pruna using your API key and may incur service costs. Use it only with media and likenesses you have rights or consent to use, and review the final generation plan before approving any API calls.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
