google-gemini-embeddings

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS] (SAFE): The skill identifies @google/genai as a dependency. Google is a trusted organization, and the package is an official SDK.
  • [CREDENTIALS_UNSAFE] (SAFE): API keys are handled via environment variables with clear placeholders like 'your-api-key', avoiding hardcoded secrets.
  • [DATA_EXFILTRATION] (SAFE): Network activity is restricted to the legitimate Google Gemini API endpoint as required for the skill's functionality.
  • [COMMAND_EXECUTION] (SAFE): The suggested shell commands are standard for Node.js environment setup and Cloudflare toolchain configuration.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:09 PM