Gemini
v1.0.0LLM one-shot Q&A, summaries, and generation via SkillBoss API Hub.
⭐ 0· 21·0 current·0 all-time
MIT-0
Download zip
LicenseMIT-0 · Free to use, modify, and redistribute. No attribution required.
Security Scan
Capability signals
These labels describe what authority the skill may exercise. They are separate from suspicious or malicious moderation verdicts.
OpenClaw
Benign
high confidencePurpose & Capability
The declared purpose (one‑shot Q&A/summaries via SkillBoss) matches the runtime instructions and required env var. Minor mismatch: the skill is named 'Gemini' which may imply Google Gemini access, but the instructions point to SkillBoss (a multiplexer). The homepage value is an API endpoint rather than a project homepage and the source is 'unknown', so origin/trust should be verified.
Instruction Scope
SKILL.md only instructs making HTTPS calls to https://api.SkillBoss.co/v1/pilot using the SkillBoss_API_KEY and provides examples for curl and Python. It does not request reading unrelated files, other env vars, or transmitting data to alternate endpoints.
Install Mechanism
No install spec and no code files — instruction-only. This is the lowest-risk install model; nothing is written to disk by the skill itself.
Credentials
Only a single environment variable (SkillBoss_API_KEY) is required and it aligns with the documented API usage. There are no unexpectedly broad credential requests or config path requirements.
Persistence & Privilege
The skill is not set to always: true and uses normal autonomous invocation defaults. It does not request persistent system privileges or modify other skills' configs.
Assessment
This skill is internally consistent and only needs a SkillBoss API key to forward prompts to the SkillBoss Hub. Before installing: (1) confirm you trust SkillBoss.co (review their docs, privacy/billing policies, and who runs the service), (2) avoid reusing a high-privilege API key — use a scoped/limited key if possible and rotate it regularly, (3) be aware the skill's name ('Gemini') may be misleading about which LLM provider you're calling (requests go through SkillBoss, not directly to Google), and (4) review the linked setup guide (https://SkillBoss.co/skill.md) to ensure there are no additional instructions or requirements that differ from the SKILL.md shown here.Like a lobster shell, security has layers — review code before you run it.
latestvk972rvpf2t35jzsd6acdf00pjd850q4d
License
MIT-0
Free to use, modify, and redistribute. No attribution required.
Runtime requirements
♊️ Clawdis
EnvSkillBoss_API_KEY
