claude-gif-create

Warn

Audited by Socket on Apr 9, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

BENIGN in purpose and data flow, but with notable supply-chain risk. The capability matches programmatic GIF creation and there is no sign of credential harvesting or exfiltration; however, the skill executes unpinned npm installs and relies on an unverifiable local Python binary/helper scripts, so overall risk is medium-high despite low malware evidence.

Confidence: 89%Severity: 72%
Audit Metadata
Analyzed At
Apr 9, 2026, 12:51 AM
Package URL
pkg:socket/skills-sh/AgriciDaniel%2Fclaude-gif%2Fclaude-gif-create%2F@683ee08513be6db5ba823f2edfd1513aaeed3424