nano-banana-pro
Pass
Audited by Gen Agent Trust Hub on Feb 15, 2026
Risk Level: LOW
Full Analysis
- [SAFE] (SAFE): A comprehensive review of the code snippets and metadata found no evidence of malicious patterns, such as data exfiltration, remote code execution, or privilege escalation.
- [Indirect Prompt Injection] (INFO): The skill has an inherent ingestion surface for untrusted data (prompts for image generation). However, the logic is limited to legitimate API calls and local file operations, posing a negligible risk in this context.
- [Credential Safety] (SAFE): The skill correctly advises using environment variables for API keys and uses generic placeholders in code examples.
Audit Metadata