linkfox-zhihuiya-bibliography
Pass
Audited by Gen Agent Trust Hub on Apr 22, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill connects to tool-gateway.linkfox.com to retrieve patent bibliographic data. This domain is owned by the skill's author and is used for its stated functionality.
- [CREDENTIALS_UNSAFE]: Authentication is managed securely through the environment variable LINKFOXAGENT_API_KEY, avoiding the risk of hardcoded secrets.
- [COMMAND_EXECUTION]: The skill includes a Python script (zhihuiya_bibliography.py) that performs standard HTTP POST requests using the built-in urllib library; it does not involve any dangerous shell commands or subprocess execution.
- [SAFE]: Analysis of the skill instructions and code confirms the absence of prompt injection, data exfiltration, obfuscation, or persistence mechanisms.
Audit Metadata