product-sheet-generate

Warn

Audited by Socket on Mar 26, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The stated purpose is coherent for a product-sheet image skill, but the main execution path relies on an unverifiable local CLI wrapper that uploads files and returns download URLs without documented provenance or official endpoint mapping. The capability fits the purpose, yet install/execution trust and data-flow transparency are insufficient.

Confidence: 86%Severity: 82%
Audit Metadata
Analyzed At
Mar 26, 2026, 06:04 AM
Package URL
pkg:socket/skills-sh/ArcoCodes%2Frenoise-plugins-official%2Fproduct-sheet-generate%2F@69fdb2272d16e708beca8185b970a4ee50b087bc
Security Audit — socket — product-sheet-generate