claude-video-create
Pass
Audited by Gen Agent Trust Hub on May 15, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONREMOTE_CODE_EXECUTIONPROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill utilizes
npx create-videoto fetch project templates and triggers the download of Chrome Headless Shell during the rendering process. - [COMMAND_EXECUTION]: The Bash tool is used to run standard development commands such as
npm installandnpx remotion renderfor project management and video production. - [REMOTE_CODE_EXECUTION]: React components authored by the agent are executed within the Remotion rendering environment to produce video content.
- [PROMPT_INJECTION]: The skill is designed to ingest data for video generation through command-line arguments.
- Ingestion points: The
--propsflag used in thenpx remotion rendercommand within SKILL.md. - Boundary markers: Absent.
- Capability inventory: Access to the Bash tool for command execution.
- Sanitization: No sanitization of the input data is explicitly described.
Audit Metadata