literature-review
Pass
Audited by Gen Agent Trust Hub on Aug 1, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The script
kernel.pyexecutes the commandgit config user.emailusingsubprocess.runto retrieve the user's email address. This is used to populate the User-Agent header for academic API requests, a standard practice for identification in 'polite pool' API access.- [EXTERNAL_DOWNLOADS]: The skill performs network requests to well-known scholarly metadata providers, includingapi.crossref.org,doi.org, andapi.openalex.org. These requests are used to verify DOIs and retrieve bibliographic information.
Audit Metadata