Review recommended
Independent security partners scan this skill's files for malicious content, prompt injection and risky patterns. Verdicts below come from the skills.sh audit program; each partner links to its full report.
Gen Agent Trust Hub
warnThe research skill automates deep codebase exploration and knowledge synthesis. While highly functional, it contains shell command templates that directly interpolate user-provided topics, which could lead to command injection if malicious topics are provided. It also accesses files in the global ~/.claude directory and manages multiple sub-agents, creating a significant security surface that requires careful oversight.
Socket
warn1 alert: gptAnomaly
Snyk
warnRisk: MEDIUM · 1 issue
Runlayer
warn5/13 files flagged
ZeroLeaks
passScore: 93/100 · 2 sections analyzed