Video Maker Italiano

Security checks across malware telemetry and agentic risk

Overview

This is a cloud video-making skill that clearly centers on uploading user media to NemoVideo for rendering, with no hidden code or unrelated behavior found.

Install only if you are comfortable sending the media, audio, prompts, and project state you provide to nemovideo.ai for cloud processing. Avoid sensitive or proprietary content unless you trust that provider, and monitor token or credit use because the skill can create sessions and render jobs.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Rogue AgentSelf-Modification, Session Persistence
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (3)

Missing User Warnings

Medium
Confidence
97% confidence
Finding
The skill instructs the agent to obtain tokens, create remote sessions, and upload/process user media on a cloud backend, but it does not clearly warn the user that their files and prompts are sent off-device. Because the same section also notes session/job persistence behavior, users may unknowingly expose sensitive media or audio to third-party infrastructure.

Missing User Warnings

Medium
Confidence
98% confidence
Finding
This section invites users to drop clips or images into chat and says the work is handled on cloud GPUs, but it still lacks an explicit privacy and remote-processing warning. In context, the backend also maintains session and render state, so omission of a clear notice materially increases the chance users share sensitive media without informed consent.

Session Persistence

Medium
Category
Rogue Agent
Content
---
name: video-maker-italiano
version: "1.0.0"
displayName: "Video Maker Italiano — Create and Export Italian Videos"
description: >
  Turn three product photos and a voiceover MP3 into 1080p polished Italian videos just by typing what you need. Whether it's creating professional videos in Italian with text and transitions or quick social content, drop your video clips or images and describe the result you want. No timeline dragging, no export settings — 30-60 seconds from upload to download.
metadata: {"openclaw": {"emoji": "🎬", "requires": {"env": ["NEMO_TOKEN"], "configPaths": ["~/.config/nemovideo/"]}, "primaryEnv": "NEMO_TOKEN", "variant": "greeting_v2"}}
Confidence
83% confidence
Finding
Create and Export Italian Videos" description: > Turn three product photos and a voiceover MP3 into 1080p polished Italian videos just by typing what you need. Whether it's creating professional vid

VirusTotal

63/63 vendors flagged this skill as clean.

View on VirusTotal