Habilidades byted-mediakit-shared
📦

byted-mediakit-shared

v0.2.1 Revisión del contenido r1 Riesgo alto ⚙️ Comandos externos

Route Media Tasks Through MediaKit

Complex media requests require the correct MediaKit domain and command contract. This skill routes requests and explains shared CLI setup, modes, inputs, and task polling.

Compatible con: Claude Codex Code(CC)
⚠️ 38 Deficiente

Instalar con mi Agente

Copia esta solicitud en tu Agente. Incluye la página canónica del Skill y el manifiesto.

Solicitud de agente
Review the Skillstore skill "byted-mediakit-shared" from https://skillstore.io/skills/volcengine-byted-mediakit-shared.md and its manifest at https://skillstore.io/api/skills/volcengine-byted-mediakit-shared/manifest. Verify the artifact. Stop and obtain explicit user consent before installing or changing files.

Tu Agente debe seguir mostrando su plan y solicitar cualquier confirmación exigida por la política de seguridad.

Recursos legibles por agentes

Usa estos enlaces cuando un agente de IA, crawler o script necesite contexto limpio en vez de leer la página completa.

Pruébalo

Usando "byted-mediakit-shared". Remove background noise from an interview and prepare the audio for editing.

Resultado esperado:

Selected the audio domain. Required inputs are the source media, desired output format, and any voice preservation requirements.

Usando "byted-mediakit-shared". Enhance a local video in cloud mode and wait for completion.

Resultado esperado:

Cloud upload confirmation is required. After submission, the workflow polls the returned task identifier and reports the final media result.

Usando "byted-mediakit-shared". Resize a folder of product images while preserving quality.

Resultado esperado:

Selected the image domain. The next step is to inspect batch support, size constraints, output format, and local processing availability.

Auditoría de seguridad

Riesgo alto

Most alerts are false positives caused by Markdown backticks, Chinese text, and task identifiers. Several command blocks execute or update external software, while local media can be uploaded through cloud mode without explicit per-file consent.

3
Archivos escaneados
256
Líneas analizadas
9
Elementos de revisión
0
Falsos positivos ignorados

Preocupaciones de seguridad confirmadas (1)

Alto
Implicit Local Media Upload
The skill passes local paths to an adapter that uploads files. Cloud-first configuration can transmit sensitive media without explicit per-file consent.
The instructions explicitly state that the media adapter handles uploads and that current configuration may select Cloud-first mode.
Elementos de revisión de capacidades (9)

Estas son capacidades locales reales que pueden esperarse para esta habilidad, por lo que requieren revisión, pero no se cuentan como comportamiento malicioso confirmado.

Alto
Ruby/shell backtick execution
```bash
The block runs an unpinned npm package through npx with automatic confirmation. This exposes users to package supply-chain and installation risks.
Alto
Ruby/shell backtick execution
```bash
The block executes an unpinned npm package with automatic confirmation to reinstall skills. Remote package execution creates a supply-chain risk.
Alto
Ruby/shell backtick execution
```bash
The block includes an update command that can replace installed software. Automatic software updates create integrity and supply-chain exposure.
Medio
Ruby/shell backtick execution
1. 通过本 Skill 或领域 Skill **实际执行** `mediakit-cli` 业务命令时,必须在同一次
The instruction explicitly directs the agent to execute mediakit-cli business commands. This grants an external process access to user media and configured services.
Medio
Ruby/shell backtick execution
```bash
The fenced block contains media processing and cloud task query commands with substituted values. Executing these commands can access files and network services.
Medio
Ruby/shell backtick execution
```bash
The commands initialize MediaKit, read its configuration, and inspect local dependencies. They execute an external binary and may access or modify local configuration.
Medio
Ruby/shell backtick execution
```bash
The command templates invoke local or cloud media tools with variable domains, tools, and flags. Execution can affect files or transmit data.
Medio
Ruby/shell backtick execution
```bash
The command changes the MediaKit output path using a substituted directory value. This mutates local configuration and requires validated arguments.
Medio
Ruby/shell backtick execution
```bash
The block invokes the external CLI to query a cloud task with a substituted identifier. This performs a network-backed operation through configured credentials.
Auditado por: codex
Compartir y citar este informe

Comparte el informe de evaluación versionado, la insignia neutral, la tarjeta insertable y las citas. Skillstore presenta evidencias sin decidir si este Skill es seguro.

Abrir el informe versionado
Evaluación de seguridad

Copiar enlace del informe

https://skillstore.io/skills/volcengine-byted-mediakit-shared/audits/1?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_report

Insignia Markdown

[![Skillstore security assessment](https://skillstore.io/badges/skills/volcengine-byted-mediakit-shared/security.svg)](https://skillstore.io/skills/volcengine-byted-mediakit-shared?utm_source=security_passport_badge)

Insignia HTML

<a href="https://skillstore.io/skills/volcengine-byted-mediakit-shared?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/volcengine-byted-mediakit-shared/security.svg" alt="Skillstore security assessment" loading="lazy"></a>

Tarjeta para insertar

<iframe src="https://skillstore.io/embed/skills/volcengine-byted-mediakit-shared.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>
Citas académicas (APA · BibTeX · CFF)

Cita APA

volcengine. (2026). byted-mediakit-shared security audit report (audit version 1) [Author version 0.2.1]. Skillstore. https://skillstore.io/skills/volcengine-byted-mediakit-shared/audits/1

Cita BibTeX

@techreport{volcengine-volcengine-byted-mediakit-shared-2026, author = {volcengine}, title = {byted-mediakit-shared security audit report (audit version 1)}, institution = {Skillstore}, year = {2026}, number = {1}, url = {https://skillstore.io/skills/volcengine-byted-mediakit-shared/audits/1}, note = {Author version 0.2.1} }

CITATION.cff

cff-version: 1.2.0 message: "If you use this Skill, cite its author and this versioned security audit report." title: "byted-mediakit-shared security audit report (audit version 1)" version: "0.2.1" type: report authors: - name: "volcengine" date-released: "2026-09-12" url: "https://skillstore.io/skills/volcengine-byted-mediakit-shared/audits/1" identifiers: - type: other value: "skillstore:volcengine-byted-mediakit-shared:audit:1" description: "Skillstore immutable audit report identifier"

Puntuación de Skillstore

Por qué esta puntuación Confianza de la evidencia: Medio
55
Arquitectura
100
Mantenibilidad
87
Contenido
65
Comunidad
91
Cumplimiento de la especificación

Lo que puedes crear

Plan a Video Edit

Select the editing skill and identify required inputs before processing existing footage.

Prepare Batch Images

Route resizing, compression, recognition, or image quality requests to the image workflow.

Coordinate Media Automation

Choose local or cloud execution and track asynchronous tasks across a production workflow.

Prueba estos prompts

Choose a Media Domain
I need to [goal] with [media type]. Identify the MediaKit domain skill and ask for missing information before processing.
Inspect a Media Tool
For [goal], load the correct domain skill. Inspect the selected tool help, schema, and reference, then summarize required inputs.
Run a Local Workflow
Process [input path] for [goal]. Prefer local mode, confirm tool support, validate parameters, and report the output location.
Manage a Cloud Pipeline
Build a MediaKit workflow for [inputs] and [deliverable]. Confirm uploads, execute validated commands, poll genuine task IDs, and summarize results.

Mejores prácticas

  • State the media type, processing goal, and expected output before choosing a domain.
  • Inspect current help, schema, and reference documentation before constructing parameters.
  • Confirm cloud uploads and use only genuine task identifiers returned by MediaKit.

Evitar

  • Do not guess a tool when the user has not stated a processing goal.
  • Do not invent paths, URLs, task identifiers, enum values, or business parameters.
  • Do not assume local and cloud modes expose identical parameters or results.

Preguntas frecuentes

Does this skill edit media directly?
No. It routes requests and explains shared CLI behavior. Domain skills provide specific tools and parameters.
Which media domains are supported?
It routes audio, video editing, image processing, and video understanding or enhancement workflows.
Is MediaKit CLI required?
Yes. The workflow requires mediakit-cli and may require local media dependencies.
Can processing remain local?
Some tools support local mode. Check the selected domain skill, tool reference, help, and schema first.
Can local files be uploaded?
Yes. The CLI adapter may upload local media in cloud mode, so confirm the destination and user consent.
How are asynchronous tasks checked?
Use the shared query protocol with the genuine task identifier returned by a cloud operation.

Detalles del desarrollador

Licencia

MIT

Versión del autor

v0.2.1

Revisión de Skillstore

r1

Ref.

5526951beaeca22519572a471618555839b53b05

Actualidad del mantenimiento

14/9/2026

Uso

0 descargas · 0 vistas

Estructura de archivos

Más de volcengine

Ver todo
Ver todo