infographic

Fail

Audited by Socket on Mar 1, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

The two reports describe a coherent, multi-phase infographic-generation workflow with credential handling and external API usage. The approach is not inherently malicious but introduces moderate security and privacy risks around credential management, prompt handling, and local storage of generated artifacts. Recommend tightening secret management, implementing minimal-logging for prompts, enforcing access controls, and auditing logs to reduce leakage risk. Overall, a solid but moderately-risky supply-chain tooling pattern that should be reviewed for secret hygiene and data handling before deployment.

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Mar 1, 2026, 03:29 PM
Package URL
pkg:socket/skills-sh/prabha-oss%2Fbenai-skills-develop%2Finfographic%2F@cf06fe42dbd816730484eb2ffffe5fdbdf78aa15