Review recommended
Independent security partners scan this skill's files for malicious content, prompt injection and risky patterns. Verdicts below come from the skills.sh audit program; each partner links to its full report.
Gen Agent Trust Hub
warnThis skill facilitates access to the National Cancer Institute's Imaging Data Commons (IDC) for medical imaging research. It includes instructions for the AI agent to automatically upgrade the primary 'idc-index' Python package using shell commands at runtime, which modifies the system's execution environment. Additionally, the skill processes large-scale metadata from external databases, posing a surface for indirect prompt injection. While these operations are functional requirements for scientific data access, they represent significant security considerations for autonomous agents.
Socket
passNo alerts
Snyk
warnRisk: MEDIUM · 1 issue
ZeroLeaks
passScore: 93/100 · 2 sections analyzed