context7-auto-research
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFENO_CODEEXTERNAL_DOWNLOADS
Full Analysis
- [NO_CODE]: The skill consists entirely of Markdown documentation and YAML metadata. It does not include any scripts, executables, or code blocks that would be executed by the agent.
- [EXTERNAL_DOWNLOADS]: The skill provides installation instructions using the
npx skills addcommand pointing to a public GitHub repository (BenedictKing/context7-auto-research). While the repository is hosted by an individual user rather than a pre-verified organization, providing installation pointers for public repositories is standard behavior for skill distribution and does not inherently constitute a security risk. - [SAFE]: The documentation follows best practices by recommending that API keys be stored in environment variables rather than hardcoded in the skill configuration.
Audit Metadata