pip-package-security-checker
Use when Codex is asked to inspect a pip or PyPI package for malicious behavior, suspicious installer logic, supply-chain risk, or known vulnerabilities inside the dedicated Daytona sandbox. This skill is for the pip-package-security-checker sandbox and tells Codex how to stage a pinned release, run the local uv-based security toolchain, inspect suspicious files, and return an evidence-based risk summary.
2026-03-28