logo-design-guide

Fail

Audited by Socket on Mar 10, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

Overall, the skill content aligns with its stated purpose as a guided workflow for logo design using AI image generation. The install/described tooling (infsh CLI via npx, remote model endpoints) is common for developer tooling, and there are no evident credential harvesting or data exfiltration mechanisms beyond standard CLI usage and generated assets. The data flows are consistent with generating and delivering logo assets to the user. Some supply-chain risk exists due to reliance on external, unverifiable model endpoints and third-party CLI tools, but this appears to be within the scope of a design/AI-generation workflow. Security risk is low-to-moderate; upgrade vigilance recommended around verifying the authenticity of external model providers and ensuring the CLI tools are sourced from trusted registries.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 10, 2026, 09:30 PM
Package URL
pkg:socket/skills-sh/inference-shell%2Fskills%2Flogo-design-guide%2F@3d144ee87333f18f9bfcab091492404cad3f3450