Навыки higgsfield-youtube-thumbnail
📦

higgsfield-youtube-thumbnail

v0.12.0 Ревизия содержимого r1 Критично ⚙️ Внешние команды🌐 Доступ к сети📁 Доступ к файловой системе

Create High-Impact YouTube Thumbnails

Strong thumbnails require clear concepts, readable composition, and truthful visual promises. This skill generates controlled Higgsfield variants and supports focused edits and overlays.

Поддерживает: Claude Codex Code(CC)
⚠️ 38 Плохо

Установить с помощью моего Агента

Скопируйте этот запрос в своего Агента. Он содержит каноническую страницу Skill и манифест.

Запрос агента
Review the Skillstore skill "higgsfield-youtube-thumbnail" from https://skillstore.io/skills/higgsfield-ai-higgsfield-youtube-thumbnail.md and its manifest at https://skillstore.io/api/skills/higgsfield-ai-higgsfield-youtube-thumbnail/manifest. Verify the artifact. Do not auto-install. Inspect the skill and report your findings, then wait for an operator or manual installation decision.

Ваш Агент по-прежнему должен показать план и запросить все подтверждения, требуемые политикой безопасности.

Ресурсы для AI-агентов

Используйте эти ссылки, когда AI-агенту, crawler или script нужен чистый контекст вместо полной страницы.

Протестировать

Использование «higgsfield-youtube-thumbnail». A 16:9 thumbnail for a video about restoring a damaged camera, without text.

Ожидаемый результат:

Restoration reveal: a close-up creator holds the damaged camera beside the restored result, with bright separation and no readable text.

Использование «higgsfield-youtube-thumbnail». Four Shorts cover concepts about completing a 30-day fitness challenge.

Ожидаемый результат:

  • Day 30 reveal: determined portrait with a clear final-day badge.
  • Progression: three vertical stages from day one to day thirty.
  • Scale contrast: small starting silhouette beside the stronger final pose.
  • Challenge moment: exhausted expression during the final workout.

Использование «higgsfield-youtube-thumbnail». Add the headline "FINAL TEST" to the selected clean thumbnail.

Ожидаемый результат:

Neon Lime overlay: FINAL TEST appears in the free lower quarter, away from the face, with a thick dark stroke.

Аудит безопасности

Критично

Most static findings are false positives from Markdown backticks, JavaScript syntax, or visual-design prose. The remote installer uses an unpinned curl-to-shell command, while local references and Google Fonts create disclosed third-party transfers. No prompt injection or covert exfiltration intent was found.

4
Просканировано файлов
519
Проанализировано строк
3
Пункты проверки
0
Ложные срабатывания проигнорированы

Подтверждённые проблемы безопасности (2)

Критично
Pipe to shell pattern
curl -fsSL https://raw.githubusercontent.com/higgsfield-ai/cli/main/install.sh | sh
The bootstrap command pipes a remotely downloaded, mutable script directly into sh. A compromised repository or changed script would gain immediate shell execution.
Средний
Automatic Third-Party Upload of Local Images
Face photos and logos supplied as local paths are automatically uploaded to Higgsfield. These potentially sensitive assets leave the local environment.
The skill explicitly states that local paths are auto-uploaded and describes retrying a downloaded image as an uploaded media input.
Пункты проверки возможностей (3)

Это реальные локальные возможности, которые могут ожидаться для этого навыка, поэтому они требуют проверки, но не считаются подтверждённым вредоносным поведением.

Высокий
Hardcoded URL
curl -fsSL https://raw.githubusercontent.com/higgsfield-ai/cli/main/install.sh | sh
The URL points to a mutable installation script on a remote GitHub branch. No commit hash or integrity check pins the code that will execute.
Низкий
Hardcoded URL
<link href="https://fonts.googleapis.com/css2?family=Anton&display=swap" rel="stylesheet">
The HTML preview loads Anton from Google Fonts, creating a real third-party network request. This is expected functionality but exposes the user's IP address to the font provider.
Низкий
Hardcoded URL
fontLink.href = 'https://fonts.googleapis.com/css2?family=Anton&display=swap';
The canvas workflow dynamically loads Anton from Google Fonts before rendering. This expected dependency creates a third-party request and a minor privacy and availability risk.

Обнаруженные паттерны

Pipe to shell pattern
Аудитор:: codex
Поделиться и цитировать этот отчет

Делитесь версионным отчетом об оценке, нейтральным значком, встраиваемой карточкой и цитатами. Skillstore публикует доказательства, не решая, безопасен ли этот Skill.

Открыть версионный отчет
Оценка безопасности

Копировать ссылку на отчёт

https://skillstore.io/skills/higgsfield-ai-higgsfield-youtube-thumbnail/audits/1?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_report

Значок Markdown

[![Skillstore security assessment](https://skillstore.io/badges/skills/higgsfield-ai-higgsfield-youtube-thumbnail/security.svg)](https://skillstore.io/skills/higgsfield-ai-higgsfield-youtube-thumbnail?utm_source=security_passport_badge)

Значок HTML

<a href="https://skillstore.io/skills/higgsfield-ai-higgsfield-youtube-thumbnail?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/higgsfield-ai-higgsfield-youtube-thumbnail/security.svg" alt="Skillstore security assessment" loading="lazy"></a>

Встраиваемая карточка

<iframe src="https://skillstore.io/embed/skills/higgsfield-ai-higgsfield-youtube-thumbnail.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>
Академические ссылки (APA · BibTeX · CFF)

Цитата APA

higgsfield-ai. (2026). higgsfield-youtube-thumbnail security audit report (audit version 1) [Author version 0.12.0]. Skillstore. https://skillstore.io/skills/higgsfield-ai-higgsfield-youtube-thumbnail/audits/1

Цитата BibTeX

@techreport{higgsfield-ai-higgsfield-ai-higgsfield-youtube-thumbnail-2026, author = {higgsfield-ai}, title = {higgsfield-youtube-thumbnail security audit report (audit version 1)}, institution = {Skillstore}, year = {2026}, number = {1}, url = {https://skillstore.io/skills/higgsfield-ai-higgsfield-youtube-thumbnail/audits/1}, note = {Author version 0.12.0} }

CITATION.cff

cff-version: 1.2.0 message: "If you use this Skill, cite its author and this versioned security audit report." title: "higgsfield-youtube-thumbnail security audit report (audit version 1)" version: "0.12.0" type: report authors: - name: "higgsfield-ai" date-released: "2026-08-10" url: "https://skillstore.io/skills/higgsfield-ai-higgsfield-youtube-thumbnail/audits/1" identifiers: - type: other value: "skillstore:higgsfield-ai-higgsfield-youtube-thumbnail:audit:1" description: "Skillstore immutable audit report identifier"

Оценка Skillstore

Почему такая оценка Достоверность доказательств: Низкий
41
Архитектура
100
Сопровождаемость
87
Контент
65
Сообщество
91
Соответствие спецификации

Что вы можете построить

Launch a YouTube Video

Create several truthful 16:9 thumbnail concepts with clear focal subjects and strong mobile readability.

Prepare Vertical Covers

Generate 9:16 Shorts covers or 4:5 Instagram covers while keeping faces in readable positions.

Maintain Brand Consistency

Use face references, logos, controlled variants, and focused edits across a recurring video series.

Попробуйте эти промпты

Create a Basic Thumbnail
Create a truthful 16:9 YouTube thumbnail for a video titled "[title]" with one clear subject and no text.
Create Concept Variants
Create four distinct 16:9 concepts for "[topic]" using [face image], while preserving identity and avoiding unsupported claims.
Create a Vertical Cover
Create a 9:16 Shorts cover for "[topic]" with the face in the upper two-thirds and a two-word overlay.
Direct a Branded Variant Set
Create four branded variants for "[topic]" using [face images] and [logo], varying only concept, expression, and camera direction.

Лучшие практики

  • Provide the exact video promise, required scene details, target ratio, and approved reference images.
  • Keep one focal subject and verify that the concept remains readable near 120 pixels wide.
  • Review every result for truthful claims, identity accuracy, stray text, watermarks, and exact headline spelling.

Избегать

  • Do not imitate a reference thumbnail's identity or exact composition.
  • Do not request unsupported claims, invented statistics, false screenshots, or misleading outcomes.
  • Do not combine many subjects, props, labels, and effects into one crowded thumbnail.

Часто задаваемые вопросы

Which image ratios are supported?
Use 16:9 for standard YouTube thumbnails, 9:16 for Shorts, and 4:5 for Instagram covers.
Can the skill preserve a person's identity?
It can use supplied face references and detailed identity instructions, but every result still requires visual review.
Can it add headline text?
Yes. It supports deterministic HTML canvas overlays or explicitly requested text baked during image generation.
Does it create multiple variants?
Yes. It makes separate generation calls for distinct concepts, expressions, or camera directions, with a maximum of 16 generations.
What external services are required?
The workflow requires an authenticated Higgsfield account. Google Fonts is also used by the documented overlay examples.
Are local images kept on the device?
No. Local face and logo paths are automatically uploaded to Higgsfield when used as generation inputs.

Сведения для разработчиков

Автор

higgsfield-ai

Лицензия

MIT

Версия автора

v0.12.0

Ревизия Skillstore

r1

Ссылка

fc553c4dd54775bee8e8b453e855e16c3dc67def

Актуальность поддержки

11.08.2026

Использование

0 загрузок · 0 просмотров

Структура файлов