og-image-design

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core purpose is plausible, but the skill is over-broad for a design guide, depends on transitive skill installation, and sends user content to remote services through an external CLI with limited provenance shown in the skill itself. Main risk is supply-chain and scope creep rather than confirmed malware.

Confidence: 82%Severity: 68%
Audit Metadata
Analyzed At
Mar 18, 2026, 10:28 PM
Package URL
pkg:socket/skills-sh/inference-sh%2Fagent-skills%2Fog-image-design%2F@2d3e3d015cc02573acbfc1d4a6d3cb2a1df4402d