gpt-image-2-skill

Warn

Audited by Socket on Apr 25, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

Mostly coherent image-generation skill with proportionate OpenAI/API usage, but install trust is only moderately strong because it relies on direct GitHub installs and agent/plugin installation from a repo owner that does not clearly match the stated publisher branding. No clear malicious exfiltration is shown, but the supply-chain and transitive-skill-install patterns make this medium-risk and mildly suspicious rather than fully benign.

Confidence: 84%Severity: 58%
Audit Metadata
Analyzed At
Apr 25, 2026, 04:21 PM
Package URL
pkg:socket/skills-sh/Aradotso%2Ftrending-skills%2Fgpt-image-2-skill%2F@33dc1116940a9c06613ac62882d4461fc4a025e5