pandas-pro
Pass
Audited by Gen Agent Trust Hub on Sep 13, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill facilitates the ingestion and processing of external data sources, creating a potential surface for indirect prompt injection if the processed files are attacker-controlled.
- Ingestion points: External data is loaded using
pd.read_csv,pd.read_parquet, andpd.read_featheracross multiple reference files, includingreferences/data-cleaning.mdandreferences/performance-optimization.md. - Boundary markers: The skill instructs the agent to validate data quality using
assertchecks inSKILL.mdand provides patterns for schema validation using thepanderalibrary inreferences/data-cleaning.md. - Capability inventory: The agent is granted file system read and write capabilities through the pandas library, including the use of
pd.eval()for optimized expression evaluation as shown inreferences/performance-optimization.md. - Sanitization: The skill provides extensive documentation for sanitizing data, including missing value handling (
fillna,dropna), strict type enforcement (astype), and regex-based string validation inreferences/data-cleaning.md.
Audit Metadata