flux-image

Pass

Audited by Gen Agent Trust Hub on Mar 27, 2026

Risk Level: SAFEREMOTE_CODE_EXECUTIONEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [REMOTE_CODE_EXECUTION]: The skill instructs the agent to install a CLI tool by piping a script from the vendor's domain (https://cli.inference.sh) directly to the shell. This is a standard installation pattern for this vendor's infrastructure.
  • [EXTERNAL_DOWNLOADS]: Fetches executable binaries and verification metadata from the vendor's distribution subdomains (dist.inference.sh).
  • [COMMAND_EXECUTION]: Executes the infsh command-line tool to run AI applications and manage user sessions.
  • [DATA_EXFILTRATION]: Performs network operations to the vendor's API service to authenticate users and transmit prompts for image generation.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 27, 2026, 02:29 PM