article-illustrator

Warn

Audited by Socket on Apr 8, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core article-illustration workflow is coherent and mostly proportionate, but the skill explicitly supports arbitrary Gemini relay/compatible endpoints and would forward API keys and prompts to those third-party domains. Optional Qiniu upload is purpose-aligned, while the main security issue is intermediary credential/data routing rather than malware behavior.

Confidence: 90%Severity: 68%
Audit Metadata
Analyzed At
Apr 8, 2026, 02:18 AM
Package URL
pkg:socket/skills-sh/ZhanlinCui%2FSuper-Article%2Farticle-illustrator%2F@3f2b7bf118be3bb67737946653d8998b9c461217