data-analysis-agent-business-intelligence
Fail
Audited by Snyk on May 17, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E005: Suspicious download URL detected in skill instructions.
- Suspicious download URL detected (high risk: 0.90). Suspicious — the skill instructs executing remote scripts (raw GitHub .ps1/.sh) via iwr|iex and curl|sh from an unfamiliar GitHub user (Zafer-Liu) and exposes local MCP executor endpoints; direct-download-and-run patterns from unknown repositories are a common malware distribution vector even if some listed API domains are legitimate.
Issues (1)
E005
CRITICALSuspicious download URL detected in skill instructions.
Audit Metadata