gpt-image-2
Pass
Audited by Gen Agent Trust Hub on May 5, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill utilizes
pnpm dlxto download and run the@pilio/clipackage from the NPM registry. This package belongs to the vendor's namespace and is used to provide the skill's core functionality. - [COMMAND_EXECUTION]: The skill invokes shell commands via the Pilio CLI to generate images and poll for task status. These operations are transparent and align with the described purpose of the skill.
- [CREDENTIALS_UNSAFE]: The skill correctly instructs the agent to use the
PILIO_API_KEYenvironment variable rather than hardcoding secrets or asking users to input them in the conversation, following security best practices.
Audit Metadata