gemini-imagegen

Fail

Audited by Socket on Mar 10, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The Gemini Image Generation skill presents a coherent, purpose-aligned tool for image generation and editing using a documented API, with credentials limited to a single API key and data flow confined to standard API calls. It does not exhibit evident security risks such as download/execution of binaries, credential forwarding to unknown services, or autonomous real-world actions. Overall, the footprint is benign and proportionate to its stated purpose, assuming secure handling of GEMINI_API_KEY and proper validation of any external grounding features.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 10, 2026, 03:29 AM
Package URL
pkg:socket/skills-sh/egradman%2Fcompound-engineering-plugin%2Fgemini-imagegen%2F@f8ba729991f9c939d8ad55b376a7aff102ceb156