Review recommended
Independent security partners scan this skill's files for malicious content, prompt injection and risky patterns. Verdicts below come from the skills.sh audit program; each partner links to its full report.
Gen Agent Trust Hub
warnThis skill downloads and executes code from an unverified GitHub repository, which presents a supply chain risk. It also introduces a surface for indirect prompt injection by processing external data without clear boundary markers or sanitization.
Socket
passNo alerts
Snyk
warnRisk: MEDIUM · 1 issue
Runlayer
pass1 file scanned · No issues
ZeroLeaks
passScore: 93/100 · 2 sections analyzed