.fyi
SkillsMCPPluginsSubagents

Browse by category

DevOps & CI/CD SkillsProductivity & Workflow SkillsOther SkillsProduct & Project Management SkillsDocumentation & Knowledge SkillsCode Review & Refactor SkillsBackend & APIs SkillsAgent Meta & Communication SkillsResearch SkillsSecurity SkillsUX UI & Design SkillsTesting & QA SkillsSee all →

Every Claude Code skill, MCP server, plugin and subagent in one directory. Searchable, comparable, and one command from installed. Live stats from GitHub, npm and PyPI.

We're on Product HuntYour agent's app storeCheck it out →
Agent SkillsMCP ServersPluginsSubagentsCoding Agents
CollectionsOfficial publishersGlossaryFAQBlogSearchSavedFeedback
PrivacyTermsllms.txtSitemap

made with ♥ · © 2026 aaaa.fyi

Independent project · real data from public registries

…/academic-pipeline/security
home/skills/academic-pipeline/security
imbad0202 avatar

academic-pipeline — security audits

Flagged by auditors

Independent security partners scan this skill's files for malicious content, prompt injection and risky patterns. Verdicts below come from the skills.sh audit program; each partner links to its full report.

  • Gen Agent Trust Hub

    pass

    The Academic Pipeline skill is a sophisticated orchestrator for end-to-end research workflows. It manages complex handoffs between specialized agents for research, writing, integrity verification, and peer review. The skill utilizes a series of local Python scripts and external tools (Pandoc, Tectonic) to process documents and maintain state. Security analysis identifies an inherent attack surface for Indirect Prompt Injection, as the skill ingests and processes user-supplied manuscripts and external reviewer feedback. However, the skill incorporates robust safety measures, including mandatory automated verification of all citations against ground-truth APIs and a structured review process. No malicious patterns, obfuscation, or unauthorized data operations were detected.

    Risk: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSPROMPT_INJECTIONMay 22, 2026Full report
  • Socket

    pass

    No alerts

    May 22, 2026Full report
  • Snyk

    warn

    Risk: MEDIUM · 3 issues

    Risk: MEDIUMMay 22, 2026Full report
  • Runlayer

    fail

    5/13 files flagged

    Risk: HIGHMar 14, 2026Full report
  • ZeroLeaks

    pass

    1 finding · Score: 86/100

    Risk: LOWApr 16, 2026Full report