gemini-image

Warn

Audited by Socket on Sep 16, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The workflow broadly matches the stated purpose, and data flows go to Google and localhost, not attacker infrastructure. But the skill depends on a powerful third-party automation CLI/server that receives Google credentials and sessions, while the skill omits a precise trusted install source and the CamoFox publisher identity is ambiguous across multiple projects.

Confidence: 88%Severity: 64%
Audit Metadata
Analyzed At
Sep 16, 2026, 08:11 PM
Package URL
pkg:socket/skills-sh/redf0x1%2Fcamofox-browser%2Fgemini-image%2F@c41a87388e7d8b9c7022e225e92272e211ddb981eed41004236216c0b0f3f974
Security Audit — socket — gemini-image