gemini-cli-docs

Warn

Audited by Socket on Mar 2, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

Overall, the skill appears benign and coherently aligned with its stated purpose: it documents and enables scraping, indexing, and querying Gemini CLI docs with explicit workflow controls and script-based operations. The footprint is proportionate to its purpose, with no evident credential handling, data exfiltration, or autonomous real-world actions. Potential risks are limited to network fetches for documentation and local file/index management through scripts, which are expected in a documentation-management tool. Recommended monitoring would focus on ensuring the external scraping source remains trusted and that index-management scripts do not inadvertently execute arbitrary code from upstream sources.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 2, 2026, 03:50 PM
Package URL
pkg:socket/skills-sh/melodic-software%2Fclaude-code-plugins%2Fgemini-cli-docs%2F@bc7f9fcaf5747fecf5f3fd3b253960a693806b5c