gemini

Fail

Audited by Socket on Mar 12, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The Gemini CLI skill presents a coherent footprint: a legitimate, officially installable CLI accessed via Homebrew to perform Q&A, summaries, and generation with an optional interactive login. Its footprint is proportionate to its stated purpose and relies on a trusted distribution channel. The main security considerations are standard for any CLI that authenticates to a remote service: secure handling and storage of credentials/tokens, and clear data flow/privacy details. Absent explicit exposure of credentials or unverified endpoints, the risk remains low to moderate and aligned with typical developer tooling. Recommend verifying TLS enforcement, token storage practices, and privacy policy for data sent to Gemini services.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 12, 2026, 02:38 AM
Package URL
pkg:socket/skills-sh/Gen-Verse%2FOpenClaw-RL%2Fgemini%2F@07fd9eaadbf79aae625ecf7c13a29e734f1878e7