Flagged by auditors
Independent security partners scan this skill's files for malicious content, prompt injection and risky patterns. Verdicts below come from the skills.sh audit program; each partner links to its full report.
Gen Agent Trust Hub
warnThis skill enables automation for LabArchives electronic lab notebooks. It requires the installation of a Python library from an unverified personal GitHub repository, presenting a supply chain risk. Additionally, the skill's data processing workflow creates an attack surface for indirect prompt injection from notebook content.
Socket
passNo alerts
Snyk
failRisk: HIGH · 2 issues
ZeroLeaks
passScore: 93/100 · 2 sections analyzed