nsfc-literature

Pass

Audited by Gen Agent Trust Hub on Mar 16, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill uses uvx to run wenxian, which is an external utility developed by the author 'njzjz'. This is a legitimate vendor resource for the skill's stated purpose of citation generation.
  • [COMMAND_EXECUTION]: The script scripts/generate_references.py uses subprocess.run to call the wenxian tool. This is a standard execution pattern for this utility and is used safely with pre-defined arguments.
  • [REMOTE_CODE_EXECUTION]: The skill communicates with the public OpenAlex API (api.openalex.org) to fetch bibliographic data. This is a well-known academic service and the data processed is treated as non-executable JSON content.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 16, 2026, 07:39 AM