zinc-database
Warn
Audited by Socket on Mar 3, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The skill fragment represents a data-access and workflow-orchestration artifact aimed at querying ZINC22 and retrieving compound data. Its footprint—public HTTP API usage, curl-based data retrieval, and Python-based parsing—aligns with its stated purpose. There is no evidence of credential harvesting or covert data exfiltration within the provided content. Primary risks are external data dependencies, rate limits, licensing terms, and handling of downloaded 3D structures; these do not imply malicious intent but warrant standard safeguards.
Confidence: 75%Severity: 75%
Audit Metadata