google-gemini-file-search

Fail

Audited by Socket on Mar 10, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

Overall, the Google Gemini File Search skill presents a benign, well-scoped tool for document ingestion, indexing, and retrieval via Gemini File Search. The footprint aligns with the stated purpose: standard dependency on a known SDK, official API interactions, and proportionate credential usage (API key). No evidence of malicious data exfiltration, credential harvesting, or supply-chain abuse is observed in the provided material. Some risk signals exist around documentation-heavy instructions and environmental credential handling, but these are typical for developer tooling and are not indicative of malicious intent. Recommended enhancements include clearer data-retention controls, explicit handling of sensitive document types, and more explicit scoping of permissions for production deployments.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 10, 2026, 03:50 AM
Package URL
pkg:socket/skills-sh/evolv3ai%2Fclaude-skills-archive%2Fgoogle-gemini-file-search%2F@06a47ae4cbf53461ac065ddfe857e5b72f43a786