slack-gif-creator
Pass
Audited by Gen Agent Trust Hub on Aug 21, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes user-uploaded images using the Pillow library, which acts as a data ingestion point. While no specific exploit is present, this surface could theoretically be targeted by malformed image files aiming to exploit vulnerabilities in underlying processing libraries.\n * Ingestion points: The SKILL.md documentation describes loading user-uploaded images for animation or as style references.\n * Boundary markers: None present.\n * Capability inventory: The skill possesses the capability to write files to the local file system using the imageio library in core/gif_builder.py.\n * Sanitization: The skill relies on the standard decoding logic provided by the Pillow library.\n- [EXTERNAL_DOWNLOADS]: The skill specifies dependencies on common and reputable Python packages including pillow, imageio, and numpy, which are appropriate for its stated purpose of creating and optimizing animated GIFs.
Audit Metadata