gen-image
Fail
Audited by Socket on Mar 9, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill's footprint is coherent with its stated purpose: it provides a legitimate integration with an external image generation API, relies on standard environment-based API key configuration, and does not demonstrate suspicious or excessive access to local resources or unknown third-party binaries. Data flows are typical for API-based services, and there is no evident credential harvesting or exfiltration pattern. The primary security considerations relate to user awareness of data handling by the external Nano Banana service and ensuring secure handling of API keys in the runtime environment.
Confidence: 98%
Audit Metadata