ai-image-generation

Pass

Audited by Gen Agent Trust Hub on Jun 12, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses npx to execute the image-skill CLI tool and a skills utility for management. These commands are necessary for generating images and installing the skill into the agent's environment.
  • [EXTERNAL_DOWNLOADS]: The skill downloads the image-skill package from the NPM registry at runtime using the npx -y image-skill@latest command.
  • [DATA_EXFILTRATION]: The skill communicates with the service's official domain api.image-skill.com to send image generation prompts and retrieve hosted media URLs. This behavior is consistent with the stated functionality of the hosted runtime.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 12, 2026, 10:30 PM
Security Audit — agent-trust-hub — ai-image-generation