active-research
Audited by Socket on Mar 18, 2026
1 alert found:
SecurityThe fragment represents a coherent, well-structured skill specification for an AI agent to perform literature research and generate structured reports using a browser automation workflow (Actionbook) and a json-ui renderer. There are no evident malicious intents or credential harvesting patterns. The data flows align with the stated purpose (topic input -> browse/search -> extract/synthesize -> output report). The primary concerns are typical supply-chain risks associated with using external tooling and public registries, not direct malware or data exfiltration. The design is benign but moderately complex; ensure proper access controls, source verification, and that output does not inadvertently leak sensitive user-generated topics or restricted content.