ai-image-generation
Warn
Audited by Socket on Jun 12, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS due to transitive skill installation and reliance on a remote-installed external CLI that receives authentication, but not clearly malicious. The overall footprint fits an image-generation SaaS skill and uses same-org infrastructure; main concerns are supply-chain trust, mutable installer execution, and expanded trust via installing other skills.
Confidence: 100%Severity: 60%
Audit Metadata