logo-design-guide

Warn

Audited by Socket on May 15, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill's stated purpose is benign and the model calls fit logo generation, but the install and trust story is not fully coherent: it recommends `npx skills add belt-sh/cli` instead of the vendor's documented belt install paths, links to mutable raw GitHub install docs, and asks the agent to install additional skills. The main risk is supply-chain and transitive trust expansion rather than confirmed malicious behavior.

Confidence: 87%Severity: 64%
Audit Metadata
Analyzed At
May 15, 2026, 07:16 PM
Package URL
pkg:socket/skills-sh/infsh-skills%2Fskills%2Flogo-design-guide%2F@d8429d4ac5bac09cabc96830cbc879de91701ff7
Security Audit — socket — logo-design-guide