Passed all audits
Independent security partners scan this skill's files for malicious content, prompt injection and risky patterns. Verdicts below come from the skills.sh audit program; each partner links to its full report.
Gen Agent Trust Hub
passThe skill outlines a professional workflow for machine learning engineering, focusing on data contracts, reproducibility, and security hardening. It encourages the detection of secrets, PII, and unsafe deserialization in ML artifacts. As it is designed to ingest and process external notebooks and datasets, it possesses an indirect prompt injection surface, though it provides specific guidance for mitigation.
Socket
passNo alerts
Snyk
passRisk: LOW · No issues