institutional-repository-guide

Pass

Audited by Gen Agent Trust Hub on Apr 18, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill includes Python code to fetch repository metadata from the OpenDOAR registry at v2.sherpa.ac.uk. This is a well-known academic directory, and the network operations are appropriate for the skill's documented purpose.
  • [COMMAND_EXECUTION]: Provided code snippets use the standard Python library (urllib.request, json, xml.etree.ElementTree) for HTTP requests and parsing. No arbitrary command execution, shell spawning, or dynamic evaluation patterns were detected.
  • [DATA_EXFILTRATION]: While the skill implements networking capabilities, they are restricted to harvesting research metadata. No access to sensitive system files, environment variables, or credentials was found.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 18, 2026, 11:53 PM