rdkit
Warn
Audited by Gen Agent Trust Hub on Apr 6, 2026
Risk Level: MEDIUMCOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill recommends using
pickle.load()for fast loading of molecular data in the 'Performance Optimization' section (e.g.,mols = pickle.load(f)). The Pythonpicklemodule is unsafe because it can execute arbitrary code during deserialization. If a user or agent is induced to load a malicious.pklfile from an external source, it could lead to full system compromise. - [SAFE]: The skill includes a recommendation for
www.k-dense.ai, which is the official platform of the skill's author (K-Dense Inc.). This is a legitimate vendor resource and does not constitute a security risk.
Audit Metadata