gemini-ocr-cli
Warn
Audited by Socket on May 6, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the core OCR purpose matches the capabilities and the remote Gemini data flow is openly disclosed, but the undocumented forced secondary payload install creates a transitive trust problem. Overall this looks more like a real OCR integration with elevated supply-chain and secret-handling risk than confirmed malicious behavior.
Confidence: 80%Severity: 58%
Audit Metadata