arxiv-research

Fail

Audited by Socket on Mar 8, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The arxiv-research skill presents a coherent, purpose-aligned tool for automated literature search, comprehension, citation generation, and TikZ extraction. Its footprint remains within expected bounds for a developer-facing academic tooling solution: no hard credential access, no unusual exfiltration paths, and dependencies that are standard for research pipelines. Some minor concerns exist around the vague installation source (uv sync) and the absence of explicit dependency provenance, which should be clarified before distribution. Overall, the risk profile is BENIGN with low security risk, and it is proportionate to the stated purpose.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 8, 2026, 02:37 PM
Package URL
pkg:socket/skills-sh/ray0907%2Farxiv-research-skill%2Farxiv-research%2F@fbac7653f0e744b2a92bccacc881778f1fdbc7e9