Skills nano-banana
📦

nano-banana

Content revision r2 Medium Risk ⚙️ External commands🌐 Network access

Generate and Edit Images with Gemini

Creating consistent images requires model selection and precise command inputs. This skill prepares and runs Gemini image workflows through the inference.sh CLI.

Supports: Claude Codex Code(CC)
⚠️ 50 Poor

Install with my Agent

Copy this request to your Agent. It includes the canonical Skill page and manifest.

Agent request
Review the Skillstore skill "nano-banana" from https://skillstore.io/skills/inferen-sh-nano-banana.md and its manifest at https://skillstore.io/api/skills/inferen-sh-nano-banana/manifest. Verify the artifact. You may proceed after verification, subject to the environment's own policy.

Your Agent should still show its plan and request any confirmation required by the security policy.

Agent-readable resources

Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.

Test it

Using "nano-banana". Create four minimalist coffee shop logos in black and green.

Expected outcome:

Four distinct logo images with consistent colors, clean shapes, and simple typography.

Using "nano-banana". Add a rainbow to the supplied landscape while preserving its lighting.

Expected outcome:

An edited landscape with a naturally integrated rainbow and unchanged composition.

Using "nano-banana". Create a 4K panoramic illustration of a castle under dramatic evening light.

Expected outcome:

A detailed panoramic castle scene with dramatic shadows and high-resolution output.

Security Audit

Medium Risk
v5 • 8/6/2026 Open versioned report

The skill legitimately invokes the belt CLI and remote Gemini image services, which can transmit prompts and source images externally. Most static findings are Markdown formatting, model identifiers, placeholder URLs, or documentation links without executable behavior.

1
Files scanned
148
Lines analyzed
10
Review items
0
False positives ignored

Confirmed security concerns (1)

Medium
User Content Sent to External Image Services
Image generation and editing commands send prompts and source image references to inference.sh and Gemini services. Sensitive content may leave the local environment.
The documented belt app run commands explicitly submit prompts and image URLs to named remote image models.
Capability review items (10)

These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.

Medium
Ruby/shell backtick execution
> **Install the belt CLI skill:** `npx skills add belt-sh/cli`
Line 7 instructs users to run npx to install a remote skill. This executes third-party package tooling and introduces supply-chain risk.
Medium
Ruby/shell backtick execution
```bash
Lines 19 through 23 direct the agent to authenticate with belt and run a remote image application. These are intentional external commands with account and service effects.
Medium
Ruby/shell backtick execution
```bash
Lines 43 through 47 invoke belt to submit a text prompt to a remote Gemini image application. This has network, account, and possible billing effects.
Medium
Ruby/shell backtick execution
```bash
Lines 51 through 56 invoke belt to request multiple generated images from a remote model. The command may consume service credits and transmit prompt content.
Medium
Ruby/shell backtick execution
```bash
Lines 60 through 65 execute belt against a remote image model with a supplied prompt and aspect ratio. This creates external service effects.
Medium
Ruby/shell backtick execution
```bash
Lines 69 through 74 invoke belt and pass an image URL to a remote editing model. The service can retrieve and process user-supplied image content.
Medium
Ruby/shell backtick execution
```bash
Lines 78 through 83 run belt to request a 4K image from a remote model. The operation can transmit content and consume paid resources.
Medium
Ruby/shell backtick execution
```bash
Lines 87 through 92 invoke belt with Google Search grounding enabled. This sends prompt content to remote services and may trigger additional data retrieval.
Medium
Ruby/shell backtick execution
```bash
Lines 118 through 125 run belt, save a sample input file, and submit that file to a remote model. These commands affect local files and external services.
Medium
Ruby/shell backtick execution
```bash
Lines 129 through 138 recommend three npx commands that install remote skills. Executing third-party installation tooling creates supply-chain and local modification risk.
Audited by: codex View Audit History →
Share & cite this report

Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.

Open versioned report
Security Assessment

Copy report link

https://skillstore.io/skills/inferen-sh-nano-banana/audits/5?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_report

Markdown badge

[![Skillstore security assessment](https://skillstore.io/badges/skills/inferen-sh-nano-banana/security.svg)](https://skillstore.io/skills/inferen-sh-nano-banana?utm_source=security_passport_badge)

HTML badge

<a href="https://skillstore.io/skills/inferen-sh-nano-banana?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/inferen-sh-nano-banana/security.svg" alt="Skillstore security assessment" loading="lazy"></a>

Embed card

<iframe src="https://skillstore.io/embed/skills/inferen-sh-nano-banana.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>
Academic citations (APA · BibTeX · CFF)

APA citation

inferen-sh. (2026). nano-banana security audit report (audit version 5) [Author version unspecified]. Skillstore. https://skillstore.io/skills/inferen-sh-nano-banana/audits/5

BibTeX citation

@techreport{inferen-sh-inferen-sh-nano-banana-2026, author = {inferen-sh}, title = {nano-banana security audit report (audit version 5)}, institution = {Skillstore}, year = {2026}, number = {5}, url = {https://skillstore.io/skills/inferen-sh-nano-banana/audits/5}, note = {Author version unspecified} }

CITATION.cff

cff-version: 1.2.0 message: "If you use this Skill, cite its author and this versioned security audit report." title: "nano-banana security audit report (audit version 5)" version: "unspecified" type: report authors: - name: "inferen-sh" date-released: "2026-08-06" url: "https://skillstore.io/skills/inferen-sh-nano-banana/audits/5" identifiers: - type: other value: "skillstore:inferen-sh-nano-banana:audit:5" description: "Skillstore immutable audit report identifier"

Compare variants

5 installable variants

Each author remains a separate installable skill. The recommended variant is ranked by Skillstore evidence.

Why this variant is first

Highest Skillstore Score
tul-sh Recommended

tul-sh-nano-banana

Skillstore Score 70
Evidence Confidence High
Skillstore usage 34
Updated

2026-08-21

inference-shell-nano-banana

Skillstore Score 69
Evidence Confidence High
Skillstore usage 10
Updated

2026-08-21

toolshell-nano-banana

Skillstore Score 50
Evidence Confidence High
Skillstore usage 13
Updated

2026-08-21

inferen-sh Current

inferen-sh-nano-banana

Skillstore Score 50
Evidence Confidence High
Skillstore usage 13
Updated

2026-08-21

inference-sh-9-nano-banana

Skillstore Score 38
Evidence Confidence Medium
Skillstore usage 5
Updated

2026-08-21

Skillstore Score

Why this score Evidence Confidence: High
55
Architecture
85
Maintainability
87
Content
70
Community
83
Spec Compliance

What You Can Build

Create Campaign Visuals

Generate several branded concepts with defined colors, composition, and aspect ratios.

Prepare Product Mockups

Edit product images by changing backgrounds, lighting, or surrounding elements.

Prototype Editorial Art

Produce high-resolution illustrations grounded in current information for review.

Try These Prompts

Generate a Basic Image
Generate a photorealistic image of [subject] in [setting] with [lighting]. Use a square aspect ratio.
Create Multiple Concepts
Create four logo concepts for [brand] using [colors] and a minimalist style. Use the Gemini 2.5 Flash Image model.
Edit a Source Image
Edit [image URL] by adding [change] while preserving composition, identity, and lighting. Return one image in 16:9 format.
Create a Grounded 4K Scene
Use Gemini 3 Pro Image to create a 4K [aspect ratio] scene grounded in current information about [topic].

Best Practices

  • Confirm the selected model, image count, resolution, and expected cost before execution.
  • Describe subject, style, composition, lighting, colors, and required details explicitly.
  • Use only source images that may be lawfully transmitted to external services.

Avoid

  • Do not submit confidential images, personal data, credentials, or private URLs.
  • Do not enable search grounding when current information is unnecessary.
  • Do not request high resolution or multiple images before validating the prompt.

Frequently Asked Questions

Which models does this skill support?
It documents Gemini 3 Pro Image and Gemini 2.5 Flash Image applications available through inference.sh.
Can it edit an existing image?
Yes. Provide an accessible image URL and describe the required change.
Can it generate several images?
Yes. Set the requested image count when the selected model supports multiple outputs.
Does it support 4K output?
The documented Gemini 3 Pro Image application accepts 1K, 2K, and 4K resolution options.
Does it require network access?
Yes. The belt CLI sends requests and content to external inference services.
Is source image content private?
No local privacy guarantee is provided. Review service policies before sending sensitive or regulated content.

Developer Details

Author

inferen-sh

License

MIT

Skillstore revision

r2

Version notice

The author did not declare a version.

Ref

4121de961d1b6f2ffca856260e239505c302452c

Maintenance freshness

8/10/2026

Usage

12 downloads · 227 views

File structure

📄 SKILL.md