Flagged by auditors
Independent security partners scan this skill's files for malicious content, prompt injection and risky patterns. Verdicts below come from the skills.sh audit program; each partner links to its full report.
Gen Agent Trust Hub
failThis skill performs data analysis by executing Python code in a Jupyter kernel. It handles database credentials and suggests a risky 'curl | sh' command for installing its dependencies. It also allows installing arbitrary Python packages into its environment.
Socket
passNo alerts
Snyk
passRisk: LOW · No issues
Runlayer
warn25/25 files flagged
ZeroLeaks
passScore: 93/100 · 2 sections analyzed