github-image-upload
Warn
Audited by Socket on Sep 9, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill’s purpose is coherent, but it asks the agent to use a personal third-party GitHub CLI extension and potentially forward a full-account GitHub session cookie/token to that external code. Data flows stay within GitHub, and the prompt-injection mitigations are thoughtful, but the credential-forwarding plus non-registry extension dependency make the overall security risk high.
Confidence: 92%Severity: 84%
Audit Metadata