use-modern-python
Pass
Audited by Gen Agent Trust Hub on Sep 27, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTIONDYNAMIC_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill executes the
ruffbinary using thesubprocess.runfunction inscripts/modern_python.py. The implementation is secure as it avoids the use ofshell=Trueand passes arguments as a list, which prevents shell injection vulnerabilities. - [EXTERNAL_DOWNLOADS]: The skill is configured to use
uvxorpipxto fetch a pinned version of therufftool (ruff==0.16.8) if no local version is found in the project. These are standard and trusted tools for managing Python applications. - [INDIRECT_PROMPT_INJECTION]: The skill processes external, potentially untrusted data from the user's project files and Ruff's documentation, creating a surface for indirect prompt injection.
- Ingestion points: Python source files, project configuration files (
pyproject.toml,ruff.toml), and command output from the Ruff CLI. - Boundary markers: The skill does not explicitly use delimiters or specialized instructions to separate untrusted project data from the agent's core instructions.
- Capability inventory: The skill has permissions to read and write files within the project and execute the
ruffbinary. - Sanitization: The tool uses
shlex.splitto safely parse environment variable overrides andPath.resolve()to normalize file paths. - [DYNAMIC_EXECUTION]: The script
scripts/modern_python.pycontains logic to dynamically resolve the path to theruffexecutable by searching through various environments (virtualenvs, Poetry, PDM, Pixi) and system PATH. This is standard behavior for developer tools that need to integrate with local project settings.
Audit Metadata