scientific-toolkit-skill
Research computing toolkit for optoelectronic information science and engineering, MATLAB/Octave, Python scientific analysis, signal processing, ima…
它会碰到什么
逐条看命中(28 条严重或高危)
- 严重
references/scientific-skills/exploratory-data-analysis/references/general_scientific_formats.md:128yaml-unsafe- `yaml`: `yaml.safe_load()` or `yaml.load()`
- 严重
references/scientific-skills/literature-review/SKILL.md:659exec-pipe-to-shellcurl -fsSL https://parallel.ai/install.sh | bash
- 严重
references/scientific-skills/networkx/references/io.md:257deserialize-unsafeG = pickle.load(f)
- 严重
references/scientific-skills/paper-lookup/SKILL.md:106cred-paths2. **Fall back to `.env`** -- check `.env` in the current working directory.
- 严重
references/scientific-skills/paper-lookup/SKILL.md:106cred-paths2. **Fall back to `.env`** -- check `.env` in the current working directory.
- 严重
references/scientific-skills/scikit-learn/references/model_evaluation.md:520deserialize-unsafeloaded_model = pickle.load(f)
- 严重
references/scientific-skills/sympy/references/code-generation-printing.md:424deserialize-unsafeloaded_expr = pickle.load(f)
- 高
references/scientific-skills/citation-management/scripts/extract_metadata.py:32cred-envreadself.email = email or os.getenv('NCBI_EMAIL', '') - 高
references/scientific-skills/citation-management/scripts/extract_metadata.py:162cred-envreadapi_key = os.getenv('NCBI_API_KEY') - 高
references/scientific-skills/citation-management/scripts/search_pubmed.py:28cred-envreadself.api_key = api_key or os.getenv('NCBI_API_KEY', '') - 高
references/scientific-skills/citation-management/scripts/search_pubmed.py:29cred-envreadself.email = email or os.getenv('NCBI_EMAIL', '') - 高
references/scientific-skills/literature-review/scripts/generate_pdf.py:46exec-spawnsubprocess.run(['pandoc', '--version'], capture_output=True, check=True)
- 高
references/scientific-skills/literature-review/scripts/generate_pdf.py:91exec-spawnresult = subprocess.run(cmd, capture_output=True, text=True, check=True)
- 高
references/scientific-skills/literature-review/scripts/generate_pdf.py:110exec-spawnsubprocess.run(cmd.split(), capture_output=True, check=True)
- 高
references/scientific-skills/pymatgen/scripts/phase_diagram_generator.py:39cred-envreadapi_key = os.environ.get("MP_API_KEY") - 高
references/scientific-skills/timesfm-forecasting/scripts/check_system.py:138exec-spawnresult = subprocess.run(
- 高
references/scientific-skills/timesfm-forecasting/scripts/check_system.py:186exec-spawnresult = subprocess.run(
- 高
references/scientific-skills/timesfm-forecasting/scripts/check_system.py:307cred-envreadhf_cache = os.environ.get("HF_HOME", os.path.expanduser("~/.cache/huggingface")) - 高
references/scientific-skills/xlsx/scripts/office/soffice.py:14exec-spawnsubprocess.run(["soffice", ...], env=env)
- 高
references/scientific-skills/xlsx/scripts/office/soffice.py:26cred-envreadenv["SAL_USE_VCLPLUGIN"] = "svp"
- 高
references/scientific-skills/xlsx/scripts/office/soffice.py:30cred-envreadenv["LD_PRELOAD"] = str(shim)
- 高
references/scientific-skills/xlsx/scripts/office/soffice.py:37exec-spawnreturn subprocess.run(["soffice"] + args, env=env, **kwargs)
- 高
references/scientific-skills/xlsx/scripts/office/soffice.py:59exec-spawnsubprocess.run(
- 高
references/scientific-skills/xlsx/scripts/office/validators/redlining.py:138exec-spawnresult = subprocess.run(
- 高
references/scientific-skills/xlsx/scripts/office/validators/redlining.py:167exec-spawnresult = subprocess.run(
- 高
references/scientific-skills/xlsx/scripts/recalc.py:34exec-spawnsubprocess.run(
- 高
references/scientific-skills/xlsx/scripts/recalc.py:55exec-spawnsubprocess.run(
- 高
references/scientific-skills/xlsx/scripts/recalc.py:92exec-spawnresult = subprocess.run(cmd, capture_output=True, text=True, env=get_soffice_env())
这一栏是扫描器报的事实,不是结论。命中多不等于有毒(安全工具、规则库、示例脚本本来就会包含危险写法),命中少也不等于干净。它和你手上的凭据、文件、网络有什么关系,需要你自己看。
技能内容
Scientific Toolkit Skill
Scope
Use this skill for科研计算 and software-assisted research:
- MATLAB/Octave scripts, debugging, refactoring, signal/image processing, FFT, filtering, matrix computation, simulation, and figure export.
- Python scientific workflows with NumPy, SciPy, pandas, matplotlib, seaborn, scikit-learn, statsmodels, SymPy, and related tools.
- Statistics, exploratory data analysis, sensor/time-series forecasting, optimization, discrete-event simulation, quantum optics/open quantum systems, materials data, and graph/network analysis.
- Literature lookup, citation metadata, BibTeX, and reference verification when it supports coding or research analysis.
Use research-writing-skill for manuscript prose. Use office-academic-skill for Word/PPT deliverables.
Domain Defaults
The user's field is光电信息科学与工程. Prefer examples and checks relevant to:
- Optics, optoelectronics, optical communication, optical sensing, fiber sensing, BOTDR/BOTDA, BGS, SPM, dispersion, noise, and deconvolution.
- Signal processing, image processing, spectroscopy, detector data, sensor time series, calibration, and uncertainty.
- MATLAB simulation and reproducible figure generation for论文/答辩.
Do not fabricate physical parameters, material constants, software menu operations, experimental results, or paper conclusions. When uncertain, ask for the source file or mark the assumption.
General Workflow
- Read the provided code, data, README, docs, and project instructions before changing anything.
- Identify variables, dimensions, units, input/output paths, random seeds, and expected figures.
- Make small, verifiable changes and avoid unrelated refactors.
- Prefer mature libraries over hand-rolled numerical methods.
- Run a script-level or test-level verification when possible.
- Report environment, commands, output paths, generated figures, and known limitations.
MATLAB And Figures
- Preserve the original code structure when possible.
- Add concise comments for physical meaning, units, assumptions, or formula sources.
- Centralize key parameters and avoid hardcoded absolute paths.
- Add
rngfor stochastic simulations when reproducibility matters. - For publication figures, export both high-resolution
.pngand vector.svgwhen feasible. - Check axes, units, legends, sampling rate, line width, font, color, and image resolution.
For MATLAB/Octave details, use references/scientific-skills/matlab/SKILL.md.
Python Scientific Modules
Load only the relevant bundled reference:
- Plotting and publication figures:
matplotlib,seaborn,scientific-visualization. - Statistics and time series:
statistical-analysis,statsmodels,timesfm-forecasting. - Machine learning:
scikit-learn. - Symbolic math and formulas:
sympy. - Exploratory data analysis:
exploratory-data-analysis. - Optimization:
pymoo. - Simulation:
simpy. - Quantum optics/open quantum systems:
qutip. - Materials/crystal/band/DOS workflows:
pymatgen. - Graphs/networks/citation graphs:
networkx. - FITS or astronomical/optical imaging style data:
astropy. - Spreadsheet/PDF utilities:
xlsx,pdf. - Literature/citation support:
paper-lookup,citation-management,literature-review.
Some bundled references mention optional installs such as uv pip install ... or optional API keys for higher rate limits. Do not install packages, use cloud APIs, or send user data to external services unless the current task requires it and the user agrees.
Safety Rules
- Never expose or commit API keys, tokens, private data, or unpublished paper content.
- Do not overwrite original data, code, Word/PPT, or figures. Write versioned outputs.
- Do not delete or recursively clean user files without explicit confirmation.
- For external lookups, prefer open APIs and official documentation; clearly distinguish live lookup results from local inference.
Verification
For code:
- Run the relevant script or a minimal example.
- Check generated files exist and are readable.
- Inspect plots for axes, units, legends, and plausible dimensions.
For research analysis:
- State software versions when known.
- List input files and commands.
- Mark assumptions and uncertain parameters.
想直接用这个技能?
本站把开放许可(MIT / Apache 等)的技能按仓库打包整理到网盘,点一下转存到你自己的网盘,不用一个个从 GitHub 拉。许可未声明的技能只给原始仓库链接,不打包。