baoyu-infographic

Fail

Audited by Socket on Mar 7, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill description and workflow are coherent and proportionate to its stated purpose of generating infographics from user content using predefined layout and style galleries. All file I/O and local tooling align with a legitimate content-to-visual pipeline. There are no evident external data exfiltration or credential-forwarding patterns in the provided workflow. The only notable risk is reliance on a local binary (baoyu-image-gen) invoked via bun; ensure the binary is trusted and that .env model access remains secure. Overall, the footprint is benign with moderate security considerations focused on local tool trust and proper handling of verbatim data.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 7, 2026, 01:19 PM
Package URL
pkg:socket/skills-sh/tentacle-pro%2Fskills%2Fbaoyu-infographic%2F@145ac0a8eb167c08aed210c09e8f7394576cd605