logo-design-guide

Fail

Audited by Socket on Mar 7, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill's footprint is broadly coherent with its stated purpose: it provides guidance and executable examples for generating logos via AI image generation tooling. The data flows involve prompts and resulting imagery between the user, the infsh CLI, and external model services—consistent with a design workflow. While there is inherent reliance on third-party services, there is no evidence of credential harvesting or dangerous in-skill behavior. The security posture is moderate (trust the CLI and remote endpoints; no embedded secrets). To reduce risk, ensure explicit user consent for data being sent to external services, document data handling practices, and prefer pinned/verified CLI versions and model endpoints where possible. SecurityRisk is elevated modestly due to multi-entity data flow and third-party dependencies, but remains below high-risk thresholds given the benign nature of the task.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 7, 2026, 12:09 PM
Package URL
pkg:socket/skills-sh/toolshell%2Fskills%2Flogo-design-guide%2F@6619f30607b5262054a6a360f0d0666a491f7f5b