skills/beita6969/scienceclaw/rdkit/Gen Agent Trust Hub

rdkit

Warn

Audited by Gen Agent Trust Hub on Apr 6, 2026

Risk Level: MEDIUMCOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill recommends using pickle.load() for fast loading of molecular data in the 'Performance Optimization' section (e.g., mols = pickle.load(f)). The Python pickle module is unsafe because it can execute arbitrary code during deserialization. If a user or agent is induced to load a malicious .pkl file from an external source, it could lead to full system compromise.
  • [SAFE]: The skill includes a recommendation for www.k-dense.ai, which is the official platform of the skill's author (K-Dense Inc.). This is a legitimate vendor resource and does not constitute a security risk.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 6, 2026, 11:31 PM
Security Audit — agent-trust-hub — rdkit