gpt-image-edit
Pass
Audited by Gen Agent Trust Hub on Sep 24, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted external data in the form of image URLs, which could contain instructions intended to influence the model's behavior.
- Ingestion points: The
imagesfield inSKILL.mdaccepts an array of publicly-fetchable HTTPS URLs. - Boundary markers: The skill uses a structured JSON body to separate instruction prompts from the input image data.
- Capability inventory: The skill utilizes the
runcomfyCLI to perform network requests to the model API and write output images to the local filesystem via the--output-dirparameter. - Sanitization: Documentation indicates that the CLI does not perform shell expansion on the user-supplied prompt, mitigating certain injection risks at the interface level.
- [EXTERNAL_DOWNLOADS]: The skill requires the installation of the
@runcomfy/cliNode.js package and retrieves generated image results from official vendor domains including*.runcomfy.netand*.runcomfy.com. - [COMMAND_EXECUTION]: The skill instructs the agent to execute the
runcomfycommand-line tool to perform image editing tasks through the RunComfy Model API.
Audit Metadata