pymc-bayesian-modeling

Warn

Audited by Gen Agent Trust Hub on Apr 28, 2026

Risk Level: MEDIUMCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [DYNAMIC_EXECUTION]: The reference file references/advanced_workflows.md provides a recipe using pickle.load() to restore saved model objects. The pickle module is insecure by design, as it can be used to execute arbitrary code during deserialization. Loading a maliciously crafted pickle file can result in full system compromise.
  • [EXTERNAL_DOWNLOADS]: The SKILL.md file contains instructions to install legitimate and well-known Python packages such as pymc, arviz, numpy, and matplotlib via the standard pip package manager.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 28, 2026, 02:12 PM