studioai-prompt-enhance

Warn

Audited by Socket on May 6, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The core purpose is coherent, but the skill relies on an unverifiable external MCP server and may route prompts, images, and API keys through OpenRouter instead of only official Gemini endpoints. The capability set is mostly aligned with prompt enhancement, yet the undeclared dependency provenance and third-party credential/data routing make the overall skill medium-high risk.

Confidence: 79%Severity: 76%
Audit Metadata
Analyzed At
May 6, 2026, 12:17 PM
Package URL
pkg:socket/skills-sh/amrtawfik160%2Fstudioai-skills%2Fstudioai-prompt-enhance%2F@b4f8da9446437db2b614fa1ac1fb1dd9d096cd5e
Security Audit — socket — studioai-prompt-enhance