OverviewHistoryStatsSecurity
Security
Independent checks from skills.sh's audit partners.
Independent checks from skills.sh's audit partners.
Warn4 providerslatest audit Sep 15, 2026
Independent checks from skills.sh's audit partners.
The skill provides comprehensive tools and templates for Bayesian modeling using PyMC. A security concern is identified in the documentation regarding the use of Python's pickle module for deserialization, which can lead to arbitrary code execution if applied to untrusted files. Additionally, instructions to retrieve external citation metadata from arXiv create a potential indirect prompt injection surface.
Detected behaviors
No alerts
No issues
Score: 93/100 · 2 sections analyzed