ai-product-photography
Warn
Audited by Socket on May 20, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The core capability matches product-image generation, but the skill is not self-contained and relies on a separate CLI plus multiple transitive skill installs. Main concerns are supply-chain trust and credential/data routing through the belt/inference intermediary rather than direct model APIs; this is medium risk, not confirmed malware.
Confidence: 82%Severity: 64%
Audit Metadata