AI Selfie Generator – Create Stunning AI Selfies Free – API-powered
v1.0.0AI selfie generator — transform a portrait into a natural iPhone-style selfie photo
⭐ 0· 22·0 current·0 all-time
MIT-0
Download zip
LicenseMIT-0 · Free to use, modify, and redistribute. No attribution required.
Security Scan
OpenClaw
Benign
high confidencePurpose & Capability
Name/description (AI selfie generator) match the declared requirement (WESHOP_API_KEY) and the SKILL.md endpoints (openapi.weshop.ai). Asking for a single API key is expected for a hosted image-transformation API.
Instruction Scope
The instructions explicitly call the openapi.weshop.ai endpoints and mention uploading local images (POST /openapi/agent/assets/images). Uploading user photos to the remote service is required by the feature — this is expected but has privacy implications the user should understand. The SKILL.md otherwise stays within scope and does not instruct access to unrelated files or other environment variables.
Install Mechanism
Instruction-only skill with no install spec and no code files. Nothing is written to disk or downloaded by the skill itself, which reduces supply-chain risk.
Credentials
Only a single environment variable (WESHOP_API_KEY) is required and it's the primary credential for the stated API. This is proportionate. The SKILL.md explicitly warns to only use the key with openapi.weshop.ai.
Persistence & Privilege
No always:true flag and normal agent invocation settings. The skill does not request persistent system-wide privileges or modify other skills' configs.
Assessment
This skill appears coherent and limited to calling WeShop's API, but be aware: using it will send user images (portraits) to a third-party service (openapi.weshop.ai) and the WESHOP_API_KEY from your environment will be used automatically. Only supply your API key if you trust WeShop and are comfortable with your photos being uploaded/processed externally. Verify the API key is set in WESHOP_API_KEY (the SKILL.md warns against sending the key to other domains). Because the skill is instruction-only with no installable code, there is less risk of arbitrary code execution, but the privacy risk of image upload remains. If you need stronger assurances, ask the publisher for a privacy/data-retention policy or test with non-sensitive images and a throwaway API key first.Like a lobster shell, security has layers — review code before you run it.
latestvk97e1zmjyt4h3q3c3yt794qdz584s2za
License
MIT-0
Free to use, modify, and redistribute. No attribution required.
Runtime requirements
EnvWESHOP_API_KEY
Primary envWESHOP_API_KEY
