Security audit
videosays
Security checks across malware telemetry and agentic risk
Overview
This is a straightforward video transcription skill that uses the Videosays CLI to send user-provided video links to Videosays and retrieve transcripts.
Install this only if you are comfortable sending selected video links or share text, and your Videosays API key during authenticated requests, to the Videosays service. Be aware that login stores a local API key file and that transcription can consume account credits, especially when using --force-new.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
