Back to skill

Security audit

videosays

Security checks across malware telemetry and agentic risk

Overview

This is a straightforward video transcription skill that uses the Videosays CLI to send user-provided video links to Videosays and retrieve transcripts.

Install this only if you are comfortable sending selected video links or share text, and your Videosays API key during authenticated requests, to the Videosays service. Be aware that login stores a local API key file and that transcription can consume account credits, especially when using --force-new.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.