google-adk
Fail
Audited by Socket on Mar 10, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The Google ADK skill appears coherent with its stated purpose: it describes multi-language agent development with ADC-based authentication, tool integration, and deployment patterns aligned to Google Cloud infrastructure. The footprint shows legitimate package sources, standard authentication flows, and clearly defined design rules that constrain risky behavior. There are no obvious credential harvesting, unauthorized data exfiltration, or supply-chain red flags in the provided material. Overall, the skill is BENIGN with a relatively low securityRisk, provided evaluators verify only official release channels and avoid unverified binaries or password-protected archives in any future extensions.
Confidence: 98%
Audit Metadata