Flagged by auditors
Independent security partners scan this skill's files for malicious content, prompt injection and risky patterns. Verdicts below come from the skills.sh audit program; each partner links to its full report.
Gen Agent Trust Hub
failThe skill provides comprehensive patterns for web scraping using standard Python libraries. A homoglyph was detected in a class name, which is a technique often used to evade security scanners or signature detection. Additionally, because the skill is designed to extract content from external websites and feed it into the agent context, it presents an inherent surface for indirect prompt injection attacks.
Socket
warn1 alert: gptAnomaly
Snyk
warnRisk: MEDIUM · 1 issue
Runlayer
warn1/1 file flagged
ZeroLeaks
passScore: 93/100 · 2 sections analyzed