baoyu-image-gen
Warn
Audited by Socket on Mar 2, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The skill description is coherent with its stated purpose: it uses official APIs for image generation, relies on standard credentials via environment variables, and writes outputs locally. No evident malicious behavior, credential harvesting, or suspicious data flows are described. Potential privacy considerations exist around prompt/data transmission to external services; ensure clear data-handling/disclosure in docs. Overall risk is low to moderate depending on logging and data-sharing policies.
Confidence: 75%Severity: 75%
Audit Metadata