aippt
Fail
Audited by Socket on Feb 16, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
SUSPICIOUS but not demonstrably self-contained malware. Functional intent (article→ASCII frames→image generation→PPT) is legitimate, but the workflow enforces routing all prompts and any provided API key to a fixed, nonstandard third-party endpoint (https://ismaque.org). This creates a high-risk pattern for credential capture and data exfiltration. No in-file obfuscation or explicit destructive payloads are present. Recommend not using this workflow or sharing secrets with it until the endpoint operator is verified or the endpoint is made configurable.
Confidence: 98%
Audit Metadata