gemini-cli

Warn

Audited by Socket on Jun 24, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core Gemini CLI use is broadly consistent with the stated purpose and appears to rely on official Google tooling, but the skill expands trust to GitHub-installed extensions, a community `npx` viewer, and local hook scripts while encouraging `--yolo` auto-approved execution. This is not confirmed malware, but it is a medium-risk orchestration skill with notable supply-chain and autonomy concerns.

Confidence: 84%Severity: 62%
Audit Metadata
Analyzed At
Jun 24, 2026, 08:22 PM
Package URL
pkg:socket/skills-sh/alfredolopez80%2Fmulti-agent-ralph-loop%2Fgemini-cli%2F@125a76e5511ff2e3a00594347a9fbf1e7435ea5ce834d01dd291cb3b2974d984
Security Audit — socket — gemini-cli