CtrlK
BlogDocsLog inGet started
Tessl Logo

create-creator-takes-h3

Generate an AI creator talking to camera, saying an approved script, as one continuous track — H3 Max reference-to-video through the GooseWorks fal-proxy (bills the Ads agent). Plans takes on line boundaries under H3's 15s cap, dry-runs a cost estimate, generates the first take alone so its voice can be locked and passed to every later take, joins takes with measured 0.10s dissolves, and moves each line's timing onto the words actually spoken. Use for any format with a generated creator speaking a script (split-screen, screen inserts, talking-head ads).

72

Quality

91%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide
SecuritybySnyk

Medium

Suggest reviewing before use

SKILL.md
Quality
Evals
Security
Medium

W009: Direct money access capability detected (payment gateways, crypto, banking).

What this means

The skill is specifically designed for direct financial operations, giving the agent the ability to move money or execute financial transactions — such as payment processing, cryptocurrency operations, banking integrations, or market order execution.

Why it was flagged

The skill describes an AI video generation workflow (H3 Max reference-to-video via GooseWorks fal-proxy) that performs paid operations such as generating character stills and video takes ("bills the Ads agent", "paid (H3 Max, ~$0.16/s at 1080P)"). These are direct financial purchases/charges incurred through CLI scripts (`make_character.py`, `run_takes.py`). Although user approval is mentioned conceptually ("after the user approves"), there is no independent, programmatic authentication or service-layer access control enforced by the execution layer for these payment routes; execution relies on local script execution without documented service-side independent credential/authorization validation checks.

Report incorrect finding
Repository
gooseworks-ai/goose-skills
Audited
Security analysis
Snyk

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.