ai-image-generation

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The core image-generation behavior is aligned with the stated purpose, but the skill’s trust model depends on an external CLI installed via official-yet-risky pipe-to-shell instructions, and it encourages transitive installation of other skills. This is not confirmed malware, but it carries meaningful supply-chain and trust-expansion risk.

Confidence: 84%Severity: 58%
Audit Metadata
Analyzed At
Mar 18, 2026, 06:57 PM
Package URL
pkg:socket/skills-sh/inference-sh%2Fagent-skills%2Fai-image-generation%2F@fee6d5152110ab70736bbcc1151f0a32e1af9532