space-logo-generator
Pass
Audited by Gen Agent Trust Hub on Jul 13, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill executes a Python script (
scripts/generate_image.py) to interface with the Gemini API. The command line arguments are strictly structured to handle prompts, output paths, and API configuration. - [DATA_EXPOSURE]: The skill uses local file paths for saving generated images (
/Users/ugreen/Documents/obsidian/09image/). This is consistent with its stated purpose of saving logos to an Obsidian vault. - [CREDENTIALS_UNSAFE]: While a placeholder
REMOVED_GEMINI_KEYis visible in the documentation, the script correctly defaults to an environment variable (GEMINI_API_KEY) for secure key management. The documentation also instructs the user to provide their own key during execution. - [EXTERNAL_DOWNLOADS]: The skill makes legitimate API calls to
https://generativelanguage.googleapis.com. This is a well-known service provided by Google for AI content generation and is essential for the skill's functionality.
Audit Metadata