say
Warn
Audited by Socket on Sep 17, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The stated purpose and most capabilities are coherent for a TTS playback skill, and the primary data flow targets official Google Vertex AI. However, the core helper script is missing from review, yet it receives recap content and service-account credentials from `GEMINI_SAY_ENV`; that unverifiable implementation detail raises meaningful trust risk. Optional third-party fallbacks (`sag`, `nowplaying-cli`) add further surface, but there is no clear evidence of malicious exfiltration or deception in the provided skill text.
Confidence: 84%Severity: 58%
Audit Metadata