storyboard-creation
Audited by Socket on Mar 7, 2026
1 alert found:
Obfuscated FileThe skill's stated purpose (storyboard creation via AI image generation with panel layouts and annotations) is broadly consistent with its capabilities and workflow. The primary security concerns center on reliance on external, potentially unverifiable binaries (falai/flux-dev-lora) invoked through the infsh CLI, possible implicit data flows to remote services via the AI generation backend, and lack of explicit supply-chain safeguards (version pinning, checksums, or verifiable releases). Credential handling appears minimal and not central to the task. Overall, the footprint is coherent with the intended use but introduces notable supply-chain and data-flow risks that warrant cautious deployment and verification of the external binaries and back-end services.