gemini-audio
Fail
Audited by Socket on Mar 1, 2026
1 alert found:
MalwareMalwareSKILL.md
HIGHMalwareHIGH
SKILL.md
The Gemini Audio Skill fragment describes a legitimate cloud-based audio processing capability with standard credential handling and external API usage. Its footprint is coherent with its stated purpose: it reads API keys from environment sources, uploads audio to a trusted API, and returns transcripts/analyses or TTS output. The primary security considerations are typical for cloud integrations: protecting API keys, ensuring user consent for audio data, and enforcing data retention quotas. There are no explicit malicious actions or covert data exfiltration patterns evident in the fragment. Overall risk is moderate but aligned with its purpose as a cloud-enabled analysis/generation tool.
Confidence: 95%Severity: 90%
Audit Metadata