gpt-image

Warn

Audited by Socket on Apr 25, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

Purpose and capabilities are mostly aligned for an image-generation skill, but trust hinges on a third-party CLI and the skill explicitly permits arbitrary proxy endpoints. That makes credential and data routing the main concern: benign if pointed at official OpenAI endpoints, suspicious if used with custom gateways.

Confidence: 84%Severity: 58%
Audit Metadata
Analyzed At
Apr 25, 2026, 04:52 AM
Package URL
pkg:socket/skills-sh/zjandrew%2Fgpt-image-cli%2Fgpt-image%2F@71efc9b27ddbea0ee1aad890329be07a638a5265