Deepvista Recipe Research To Recipe
Security checks across malware telemetry and agentic risk
Overview
The skill's requests and instructions are coherent with its stated purpose — it simply orchestrates the deepvista CLI to search a knowledge base and run recipes — but pay attention to the fact that running a Recipe can access the full knowledge base and the installer is an external package.
This skill is internally consistent with its purpose, but before installing or running it: 1) Verify the deepvista-cli package comes from a trusted source and check its integrity; 2) Understand that executing a Recipe may grant the workflow access to the entire knowledge base even if you provide a focused --input string — only run recipes you trust; 3) Ensure the agent asks you for explicit confirmation before performing the 'recipe run' write action (the SKILL.md advises this but you should enforce it); 4) Review the linked skills (deepvista-vistabase, deepvista-recipe) so you know what additional capabilities/permissions they bring.
SkillSpector
SkillSpector findings are pending for this release.
VirusTotal
No VirusTotal findings
