Security audit
bioRxiv access using API with support of time period and category
Security checks across malware telemetry and agentic risk
Overview
This skill is a straightforward bioRxiv lookup tool that fetches public paper metadata and shows no credential use, local data access, persistence, or destructive behavior.
Install only if you are comfortable with the skill making network requests to bioRxiv and if Python is available in your environment. The package provenance is limited and the changelog is inaccurate, but the reviewed artifacts themselves are coherent and low risk.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
63/63 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
