T08 · Insecure Dependencies
- Location
requirements.txt:1- Finding
Standard-library modules declared as external, unpinned dependencies
- Content
View full analysis
- Remediation
View remediation
Security audit
Security checks for vulnerabilities and agentic risk
This skill appears to be a simple local Anki TSV generator, but its documentation and dependency file overstate capabilities and understate setup and content-rendering risks.
Review before installing. Do not run the included requirements.txt as-is; the script appears to need only Python's standard library. Treat the advertised advanced features as unsupported unless the package is corrected, use trusted input files only, inspect generated cards before importing them into Anki, and choose an output path that will not overwrite important files.
requirements.txt:1Standard-library modules declared as external, unpinned dependencies
scripts/main.py:25Untrusted card content is exported as unescaped HTML
The skill documentation significantly overstates implemented functionality, claiming advanced features like spaced repetition optimization, cloze/image occlusion support, tagging, and .apkg workflows while the later concrete interface only exposes simple basic card generation. This is dangerous because users or downstream agents may trust nonexistent capabilities, make unsafe assumptions about processing behavior, or route sensitive study materials into a tool that does not provide the claimed controls or outputs.
The manifest and headline description advertise a broad, sophisticated skill scope that is not supported by the later documented CLI parameters and minimal interface. In agent ecosystems, this kind of overselling is dangerous because tool selection and trust decisions are often based on metadata first, leading to misuse, failed automation, or inappropriate exposure of user files to an unsuitable tool.
The document claims both auto-download/embed of relevant images and 'no external API calls' or low/no network access, which is internally contradictory. This is dangerous because users may approve the skill under a false assumption that it is offline-only, when media retrieval behavior could introduce unreviewed network access, unexpected data disclosure, or supply-chain risk.
The lifecycle section says cloze deletion, image inclusion, and .apkg export are planned improvements, yet earlier sections present them as current capabilities with usage examples. This inconsistency undermines trust in the skill and can cause users or agents to invoke unsupported workflows, potentially mishandling files or relying on absent safeguards.
This markdown file documents writing generated card data to user-specified output files, but it does not clearly warn users that existing files at the output path may be created or overwritten. Although file output is part of the skill's purpose, a brief explicit warning about filesystem changes would improve user disclosure for data-affecting behavior.
Dependencies lack version pinning, allowing potential malicious package updates. Consider pinning versions.
# No external dependencies required
# Uses Python standard library only
argparse
re
Dependencies lack version pinning, allowing potential malicious package updates. Consider pinning versions.
# No external dependencies required
# Uses Python standard library only
argparse
re
No suspicious patterns detected.