after-effects

Warn

Audited by Socket on Feb 15, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

The skill's stated purpose (automating After Effects via generated ExtendScript) matches its capabilities, and there are no direct signs of embedded malware or obfuscation. However, the skill requires writing and executing JSX in a user-writable skills directory and invites enabling AE scripting network access — both increase the attack surface. If a threat actor can modify the skill's scripts, libs, or rule files, they could execute arbitrary ExtendScript (file system changes, replacing footage, rendering outputs) and, if network access is enabled, exfiltrate project data. Verdict: suspicious / medium-high risk in practice due to powerful local execution and optional network access; not clearly directly malicious in the provided files.

Confidence: 80%Severity: 65%
Audit Metadata
Analyzed At
Feb 15, 2026, 09:30 PM
Package URL
pkg:socket/skills-sh/aedev-tools%2Fskills%2Fafter-effects%2F@72e464259499b43dd04acc1c40b094a232b33b16