scikit-build-core

PyPI

Is scikit-build-core safe to use?

The latest brin safety scan flagged scikit-build-core v0.11.6 with risk indicators that warrant review. No known CVE vulnerabilities. Trust score: 65/100. Review the findings below before use. This is an automated assessment and may contain errors.

Install (safety-checked)

scikit-build-core Has Warnings

Warnings detected due to potential concerns

warning
CVEs

0

Threats

0

Install Scripts

0

Risk Indicators

  • Contains native code
  • Can spawn child processes

brin Recommendations

  • This package has warnings detected. Evaluate the specific concerns before proceeding.

Install with brin add scikit-build-core to automatically apply these checks before installation.

This is an automated, point-in-time assessment and may contain errors. Findings are risk indicators, not confirmed threats. Security posture may change over time. Maintainers can dispute findings via the brin review process.

scikit-build-core Capabilities & Permissions

What scikit-build-core can access when installed. Review these capabilities before using with AI agents like Cursor, Claude Code, or Codex.

Network Access

This package makes network requests.

api.github.comcmake.orgdocs.python.orggithub.comgitlab.kitware.comhatch.pypa.iojson-schema.orgpackaging.pypa.ioraw.githubusercontent.comsetuptools.pypa.io+1 more
Protocols: http, https

Filesystem Access

Reads and writes to the filesystem.

pyproject.toml (r).env (r)pyproject.toml (r).env (r).env (r).env (rw)pyproject.toml (rw).env (rw)+58 more

Process Spawning

This package can spawn child processes.

git

Environment Variables

Accesses the following environment variables.

CICMAKE_EXECUTABLECMAKE_GENERATORCMAKE_MAKE_PROGRAMFORCE_COLORMACOSX_DEPLOYMENT_TARGETREADTHEDOCS_GIT_COMMIT_HASHSOURCE_DATE_EPOCHenv

Native Modules

Contains native code that runs outside the JavaScript sandbox.

native extensionnumpy

AGENTS.md for scikit-build-core

Good instructions lead to good results. brin adds scikit-build-core documentation to your AGENTS.md so your agent knows how to use it properly—improving both safety and performance.

brin init

Vercel's research: 100% accuracy with AGENTS.md vs 53% without →

scikit-build-core Documentation & Source Code

For the full scikit-build-core README, API documentation, and source code, visit the official package registry.

Frequently asked questions about scikit-build-core safety

Weekly Downloads

1.5M

Version

0.11.6

Last Scanned

Feb 4, 2026

Trust Score

65/100·Legitimacy signals, not safety

Capabilities

Network

Connects to: api.github.com, cmake.org, docs.python.org...

Filesystem

Reads & Writes files

Process

Spawns child processes

Environment

Accesses: CI, CMAKE_EXECUTABLE, CMAKE_GENERATOR...

Native

Contains native modules