CtrlK
BlogDocsLog inGet started
Tessl Logo

paper-know-journal

当用户给出期刊/杂志名并希望了解投稿要求、投稿形式/格式清单、期刊官网信息、社区评价、审稿速度、费用、文章类型、格式细节或“这个 journal 怎么投/是否靠谱/投稿指南调研”时必须使用。联网核验期刊官网与社区评测,默认把全部中间文件隔离到当前工作目录的 `.bensz-api/task-{yyyymmdd-hhmm}-{简短描述}/paper-know-journal/`,最终只交付 `KnowJournal-{杂志名}.md`。⚠️ 不适用:用户要根据 manuscript 选择投稿期刊(用 paper-select-journal)、写论文正文、下载全文 PDF,或只问一个无需成稿的简单事实。

73

Quality

92%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

Low

Low-risk findings worth noting

SKILL.md
Quality
Evals
Security

Low

Low-risk findings.

1 low severity finding. Worth noting, but not necessarily harmful.

Low

W011: Third-party content exposure detected (indirect prompt injection risk).

What this means

The skill exposes the agent to untrusted, user-generated content from public third-party sources, creating a risk of indirect prompt injection. This includes browsing arbitrary URLs, reading social media posts or forum comments, and analyzing content from unknown websites.

Why it was flagged

该 Skill 的“调研”阶段会联网抓取并把期刊官网/投稿指南以及 SciRev、LetPub、论坛、作者经验贴等第三方网页的摘录整理进报告(即把 OUTSIDER-AUTHORED 自由文本经由运行时抓取/网页摘录后进入 LLM 的上下文用于生成),存在间接提示注入风险。

Report incorrect finding
Repository
huangwb8/ChineseResearchLaTeX
Audited
Security analysis
Snyk

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.