article-batch-illustration

Warn

Audited by Socket on Apr 5, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The skill's overall behavior matches article illustration generation, and network traffic targets the official Google Gemini endpoint. However, it forwards a sensitive Gemini API key into an unpublished local script via command-line arguments, creating unnecessary credential-handling risk and reducing trust in the actual data path.

Confidence: 87%Severity: 74%
Audit Metadata
Analyzed At
Apr 5, 2026, 07:36 AM
Package URL
pkg:socket/skills-sh/zephyrwang6%2Fwrite-skill%2Farticle-batch-illustration%2F@29029687e8cf331a9fd281a1493ed91ff667f445
Security Audit — socket — article-batch-illustration