gpt-image2-ppt

Warn

Audited by Socket on Aug 27, 2026

2 alerts found:

Anomalyx2
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill's capabilities mostly fit its stated PPT-generation purpose, but the trust model is weaker than ideal: install requires running a shell script from a personal GitHub repo, and API/data flows can be redirected to arbitrary OpenAI-compatible relays. This looks more like a risky but plausible developer tool than confirmed malware.

Confidence: 83%Severity: 64%
AnomalyLOW
scripts/codex_backend.py

No direct evidence of embedded malware (no exec/eval, no network, no credential theft) exists in this wrapper module. However, the module introduces a high-impact execution boundary by running an environment-controlled external command (CODEX_CMD) via subprocess without a strict allowlist/validation that it is the intended codex CLI. It also passes untrusted prompt content and absolute output/reference paths to that external tool, which can lead to unintended filesystem writes or behavior if inputs/environment are attacker-controlled.

Confidence: 65%Severity: 56%
Audit Metadata
Analyzed At
Aug 27, 2026, 03:15 AM
Package URL
pkg:socket/skills-sh/juneyaooo%2Fgpt-image2-ppt-skills%2Fgpt-image2-ppt%2F@2d57ef8127b83e8232a1be4e9515f0b3cc9fc91e
Security Audit — socket — gpt-image2-ppt