flux-image
Pass
Audited by Gen Agent Trust Hub on Mar 27, 2026
Risk Level: SAFEREMOTE_CODE_EXECUTIONEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [REMOTE_CODE_EXECUTION]: The skill instructs the agent to install a CLI tool by piping a script from the vendor's domain (
https://cli.inference.sh) directly to the shell. This is a standard installation pattern for this vendor's infrastructure. - [EXTERNAL_DOWNLOADS]: Fetches executable binaries and verification metadata from the vendor's distribution subdomains (
dist.inference.sh). - [COMMAND_EXECUTION]: Executes the
infshcommand-line tool to run AI applications and manage user sessions. - [DATA_EXFILTRATION]: Performs network operations to the vendor's API service to authenticate users and transmit prompts for image generation.
Audit Metadata