d2b-notice-search
Pass
Audited by Gen Agent Trust Hub on Aug 1, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill's primary function is to automate the searching of a public procurement website (www.d2b.go.kr) using standard browser automation techniques. It specifically targets publicly available information and excludes features that would require authentication or sensitive data handling, such as login, payment, or digital signatures.
- [EXTERNAL_DOWNLOADS]: The skill mentions a dependency on a Node.js package
d2b-notice-search. While the source is not explicitly linked, the package name aligns with the skill's specific purpose (South Korean defense procurement). Standard usage of specialized utility packages for niche data scraping is common and does not escalate the verdict without evidence of malicious behavior. - [COMMAND_EXECUTION]: The workflow describes building browser automation instructions. While this involves generating scripts for a browser, it is a standard practice for scraping data from sites that use complex rendering or security routing that blocks direct HTTP requests. The skill instructions clearly define the boundaries of these actions to prevent misuse.
- [DATA_EXFILTRATION]: No patterns of unauthorized data access or external exfiltration were found. The skill processes search results from a public government portal and presents them to the user.
Audit Metadata