Skip to content
← Registry
Trust Report

youtube-apify-transcript

Fetch YouTube transcripts via APIFY API. Works from cloud IPs (Hetzner, AWS, etc.) by bypassing YouTube's bot detection. Free tier includes $5/month credits (~714 videos). No credit card required.

82
CONDITIONAL
Format: openclawScanner: v0.8.0Duration: 6msScanned: 6d ago · Jun 1, 10:08 PMSource →
Embed this badge
AgentVerus CONDITIONAL 82AgentVerus CONDITIONAL 82AgentVerus CONDITIONAL 82
[![AgentVerus](https://agentverus.ai/api/v1/skill/d3a88b56-1ba3-43b4-a951-3364da816da6/badge)](https://agentverus.ai/skill/d3a88b56-1ba3-43b4-a951-3364da816da6)
Community Discussion

Community Comments

Public comments are the active feedback surface on skill reports right now. Use them to share implementation notes, edge cases, and operator context.

0 comments

Sign in to comment on this skill

No comments yet. Be the first to share your thoughts.

Continue the workflow

Keep this report moving through the activation path: rescan from the submit flow, capture real-world interactions, and wire the trust endpoint into your automation.

https://agentverus.ai/api/v1/skill/d3a88b56-1ba3-43b4-a951-3364da816da6/trust
Personalized next commands

Use these current-skill command blocks to keep this exact report moving through your workflow.

Record an interaction
curl -X POST https://agentverus.ai/api/v1/interactions \
  -H "Authorization: Bearer at_your_api_key" \
  -H "Content-Type: application/json" \
  -d '{"agentPlatform":"openclaw","skillId":"d3a88b56-1ba3-43b4-a951-3364da816da6","interactedAt":"2026-03-15T12:00:00Z","outcome":"success"}'
Fetch trust JSON
curl https://agentverus.ai/api/v1/skill/d3a88b56-1ba3-43b4-a951-3364da816da6/trust

Category Scores

78
Permissions
92
Injection
52
Dependencies
84
Behavioral
80
Content
100
Code Safety

Findings (16)

lowUnknown external reference

The skill references an unknown external domain which is classified as low risk.

https://www.youtube.com/watch?v=VIDEO_ID

Verify that this external dependency is trustworthy and necessary.

dependenciesASST-04
lowUnknown external reference

The skill references an unknown external domain which is classified as low risk.

https://youtu.be/VIDEO_ID

Verify that this external dependency is trustworthy and necessary.

dependenciesASST-04
mediumCapability contract mismatch: inferred file write is not declared-8

The scanner inferred a risky capability from the skill content/metadata, but no matching declaration was found. Add a declaration with a clear justification, or remove the behavior.

Content pattern: Create a file

Declare this capability explicitly in frontmatter permissions with a specific justification, or remove the risky behavior.

permissionsASST-03
mediumCapability contract mismatch: inferred network access is not declared-6

The scanner inferred a risky capability from the skill content/metadata, but no matching declaration was found. Add a declaration with a clear justification, or remove the behavior.

Content pattern: https://console.apify.com/billing

Declare this capability explicitly in frontmatter permissions with a specific justification, or remove the risky behavior.

permissionsASST-04
mediumCapability contract mismatch: inferred payment processing is not declared-8

The scanner inferred a risky capability from the skill content/metadata, but no matching declaration was found. Add a declaration with a clear justification, or remove the behavior.

Content pattern: $0.007

Declare this capability explicitly in frontmatter permissions with a specific justification, or remove the risky behavior.

permissionsASST-03
mediumSystem modification detected (inside code block)-6

Found system modification pattern: "~/.bashrc"

# Add to ~/.bashrc or ~/.zshrc

Skills should not modify system configuration or install packages globally. Bundle required dependencies.

behavioralASST-03
mediumAutomation evasion detected-10

Found automation evasion pattern: "bypassing bot detection"

YouTube blocks transcript requests from cloud IPs (AWS, GCP, etc.). APIFY runs the request through residential proxies, bypassing bot detection reliably.

Avoid instructions whose value proposition is evading platform defenses or automation detection. Document legitimate automation constraints instead.

behavioralASST-07
mediumCredential access detected (inside code block)-8

Found credential access pattern: "echo 'APIFY_API_TOKEN=apify_api_YOUR_TOKEN_HERE' >> .env"

echo 'APIFY_API_TOKEN=apify_api_YOUR_TOKEN_HERE' >> .env

Remove references to credentials and secrets. Skills should never access sensitive authentication data.

injectionASST-05
mediumMany external URLs referenced (10)-8

The skill references 10 external URLs and also discusses auth/API/payment workflows, which increases the chance that sensitive operations depend on many remote endpoints.

URLs: https://console.apify.com/billing, https://apify.com/pricing, https://console.apify.com/account/integrations, https://apify.com/karamelo/youtube-transcripts, https://apify.com/...

Minimize external dependencies to reduce supply chain risk.

dependenciesASST-04
mediumUnknown external reference-8

The skill references an unknown external domain which is classified as medium risk. Merged overlapping signals from the repeated finding family: - Unknown external reference

https://console.apify.com/billing

Verify that this external dependency is trustworthy and necessary.

dependenciesASST-04
lowUnknown external reference

The skill references an unknown external domain which is classified as low risk.

https://youtube.com/watch?v=VIDEO1

Verify that this external dependency is trustworthy and necessary.

dependenciesASST-04
lowUnknown external reference

The skill references an unknown external domain which is classified as low risk.

https://youtu.be/VIDEO2

Verify that this external dependency is trustworthy and necessary.

dependenciesASST-04
lowUnknown external reference

The skill references an unknown external domain which is classified as low risk.

https://youtube.com/watch?v=VIDEO3

Verify that this external dependency is trustworthy and necessary.

dependenciesASST-04
lowNo explicit safety boundaries-10

The skill does not include explicit safety boundaries defining what it should NOT do.

No safety boundary patterns found

Add a 'Safety Boundaries' section listing what the skill must NOT do (e.g., no file deletion, no network access beyond needed APIs).

contentASST-09
infoOutput constraints defined

The skill includes output format constraints (length limits, format specifications).

Output constraint patterns detected

Keep these output constraints.

contentASST-09
infoError handling instructions present

The skill includes error handling instructions for graceful failure.

Error handling patterns detected

Keep these error handling instructions.

contentASST-09