core-api-guide

Pass

Audited by Gen Agent Trust Hub on Mar 31, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides documentation and implementation examples for the CORE API (COnnecting REpositories).
  • [CREDENTIALS_UNSAFE]: Key management instructions follow industry standards by recommending the use of environment variables (CORE_API_KEY) to avoid hardcoding secrets.
  • [EXTERNAL_DOWNLOADS]: Network requests target the official api.core.ac.uk service domain and reference the official oacore GitHub repository.
  • [COMMAND_EXECUTION]: Provides standard utility examples using curl and the Python JSON module to facilitate API interaction.
  • [PROMPT_INJECTION]: The skill describes how to ingest external scholarly content. This represents an indirect prompt injection surface common to all search-based tools, but the guide does not provide automated scripts with dangerous capabilities.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 31, 2026, 10:16 PM