skills/1nfsh/skills/og-image-design/Gen Agent Trust Hub

og-image-design

Fail

Audited by Gen Agent Trust Hub on Feb 18, 2026

Risk Level: CRITICALREMOTE_CODE_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • Remote Code Execution (CRITICAL): The skill utilizes a highly dangerous pattern (curl | sh) to execute a script directly from a remote URL (https://cli.inference.sh). This allows for arbitrary command execution on the host system without any integrity checks or user intervention.
  • External Downloads (HIGH): The resource is hosted on an untrusted domain (inference.sh) that is not part of the approved global trusted sources list, significantly increasing the risk of supply chain attacks or malicious payload delivery.
Recommendations
  • HIGH: Downloads and executes remote code from: https://cli.inference.sh - DO NOT USE without thorough review
  • AI detected serious security threats
Audit Metadata
Risk Level
CRITICAL
Analyzed
Feb 18, 2026, 01:58 AM
Security Audit — agent-trust-hub — og-image-design