nanobanana-mcp-image-generation
Warn
Audited by Socket on May 18, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill’s purpose and capabilities are coherent for Gemini-based image generation, but trust is weakened because the skill publisher is not the same as the third-party MCP server it tells users to run, and it forwards Gemini/Vertex credentials to that external server. This is not confirmed malware, but it is a medium-high security risk due to third-party executable trust and mutable installation.
Confidence: 89%Severity: 64%
Audit Metadata