nano-banana
Warn
Audited by Socket on Mar 1, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The fragment is a benign usage guide for an image-generation workflow using an external CLI. It does not introduce suspicious data flows, credential handling, or network activity beyond standard CLI invocation. The described behavior is coherent with the stated purpose (image generation with persistent memory) and shows no clear supply-chain risk within the fragment itself. Potential risk exists only in the reliance on an external binary (gemini) and local filesystem writes, which are normal for such tools when used legitimately. Overall risk is low, with no malicious indicators detected in the provided text.
Confidence: 75%Severity: 75%
Audit Metadata