lovstudio-image-creator

Warn

Audited by Socket on May 7, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill's capabilities mostly match its stated image-generation purpose, but it relies on a third-party ZenMux gateway for Gemini access and executes remote CDN code during rendering. Credential scope is narrow and proportionate, so this is not overtly malicious, but the intermediary API routing and mutable external dependencies make it a medium-risk skill.

Confidence: 88%Severity: 58%
Audit Metadata
Analyzed At
May 7, 2026, 09:45 AM
Package URL
pkg:socket/skills-sh/lovstudio%2Fskills%2Flovstudio-image-creator%2F@e4699efbfe9ee6b20a232bf771e5fb19646cc0db