gemini-api

Warn

Audited by Socket on Jun 28, 2026

1 alert found:

Anomaly
AnomalyLOW
references/advanced_features.md

Overall, the snippet is mostly standard GenAI SDK usage for caching and batch orchestration. The main supply-chain/security concern is the MCP example, which executes a third-party npm package at runtime via npx and then grants the model an active tool session connected to that external process. Additionally, printing 'thought' content (when available) can leak internal reasoning to logs/console, and caching introduces a data-retention window for cached cloud content. No direct evidence of malware/credential theft is visible in the provided fragment, but the runtime tool execution pattern warrants strict provenance pinning, review, and sandboxing in real deployments.

Confidence: 62%Severity: 55%
Audit Metadata
Analyzed At
Jun 28, 2026, 05:52 PM
Package URL
pkg:socket/skills-sh/kilo-org%2Fkilo-marketplace%2Fgemini-api%2F@23faa60ebd133c2121fafd32b565601a0b63455d4b2871733f083b2f69f655ca
Security Audit — socket — gemini-api