claude-gif-create
Warn
Audited by Socket on Apr 9, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
BENIGN in purpose and data flow, but with notable supply-chain risk. The capability matches programmatic GIF creation and there is no sign of credential harvesting or exfiltration; however, the skill executes unpinned npm installs and relies on an unverifiable local Python binary/helper scripts, so overall risk is medium-high despite low malware evidence.
Confidence: 89%Severity: 72%
Audit Metadata