article-illustrator
Warn
Audited by Socket on Apr 8, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the core article-illustration workflow is coherent and mostly proportionate, but the skill explicitly supports arbitrary Gemini relay/compatible endpoints and would forward API keys and prompts to those third-party domains. Optional Qiniu upload is purpose-aligned, while the main security issue is intermediary credential/data routing rather than malware behavior.
Confidence: 90%Severity: 68%
Audit Metadata