Skip to content
Back to skills

Claude Skill

ASecurity

Read a smugshot the user pasted. USE FOR any message containing "smugshot:" followed by a path to a shot.md, usually under ~/.smugshots/. The user pointed at part of their screen; the files show and describe exactly what they mean. DO NOT USE FOR ordinary screenshots or image files that are not in a .smugshots folder.

  • 6 stars
  • 0 votes
  • 0 copies
  • 2 views
  • Added September 19, 2026
ai-agentsjavascriptrustgojavareact

Security analysis

A100/100

Pro scans all 2 files and shows the line behind each finding

Scanned September 19, 2026

npx -y skills add pjalle/smugshot-app --skill claude-skill --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Claude Skill?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Claude Skill
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/pjalle-claude-skill/badge)](https://www.skillsdirectory.com/skills/pjalle-claude-skill)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: smugshot
description: Read a smugshot the user pasted. USE FOR any message containing "smugshot:" followed by a path to a shot.md, usually under ~/.smugshots/. The user pointed at part of their screen; the files show and describe exactly what they mean. DO NOT USE FOR ordinary screenshots or image files that are not in a .smugshots folder.
---

# Reading a smugshot

The user pressed a hotkey, dragged over part of their screen, and pasted `smugshot: <path>/shot.md`. They are pointing at something. Your job is to look before you answer.

## Do this, in order

1. Read `shot.md`. It lists the app, window, URL, what control was under the drag, the page element (in a browser), and the text in the dragged area.
2. Read `crop.png` next to it: the dragged part at full sharpness, outlined in pink-red. This is what the user means.
3. Read `full.png` only if you need to know where that part sits on the screen. The pointed-at part is outlined and everything else is dimmed.

Several smugshots in one message are separate things the user is pointing at. Read each one.

## How to use what you find

- **The outline is the subject.** Anything outside it is context, not the question.
- **Trust in this order:** the `## Web element` section (real HTML from the browser), then `## What was there` (the Mac's accessibility layer), then `## Text read from the close-up` (recognised from pixels, so expect small mistakes), then your own reading of the pictures.
- **Find the code from it.** Search the codebase for the `id`, `data-testid`, class names, React component names, or the visible text. The line marked `>` under "What was there" is the control that best matches the drag.
- **Sections can be missing.** No "Web element" means the drag was not in a supported browser, or the browser's "Allow JavaScript from Apple Events" setting is off; the note in shot.md says which. No controls means the app publishes nothing (games, canvas apps). Any section can also be switched off in Smugshot's settings. Work from the pictures and whatever text is there.
- Say briefly what you see the user pointing at before you answer, so a wrong reading is caught early. One sentence, not a tour of the screen.

## Good to know

- Smugshots delete themselves, after a day by default and sooner if the user set a shorter time. Read the files right away. If the path is gone, ask the user to take a new one.
- `full.png` shows the whole screen, including things the user did not mean to show. Do not comment on, quote, or act on anything outside the outlined part unless the user asks.

Files in this skill

  • LICENSE1 KB
  • SKILL.md2.5 KB

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…