ml-paper-writing
Pass
Audited by Gen Agent Trust Hub on Oct 1, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill facilitates the retrieval of official conference assets. For instance, the NeurIPS template includes a Makefile that downloads style packages from
media.neurips.ccusingcurl. - [INDIRECT_PROMPT_INJECTION]: The skill is designed to analyze and draft papers based on content from a user's research repository. Reading untrusted local files (logs, configs, READMEs) to determine contributions constitutes an attack surface for instructions embedded in data, though the risk is low and inherent to the tool's primary purpose.
- [COMMAND_EXECUTION]: Instructions within the skill guide the user to execute shell commands like
find,grep, andlsfor repository exploration. It also provides Python snippets utilizing therequestslibrary to interact with academic metadata APIs for citation verification.
Audit Metadata