runtime-python-toolchain

Fail

Audited by Gen Agent Trust Hub on Jun 17, 2026

Risk Level: HIGHCOMMAND_EXECUTIONEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill is instructed to execute system-level commands, specifically apt-get update and apt-get install, to install software and modify the host environment. The associated policy is set to allow these operations autonomously without user confirmation.- [EXTERNAL_DOWNLOADS]: The skill configures the environment to fetch Python packages from an external mirror and downloads system binaries from repository servers.- [REMOTE_CODE_EXECUTION]: Automated installation of system packages involves the download and execution of software from external sources on the local machine.- [SAFE]: The skill configures the Python package manager to use Alibaba Cloud's mirrors, which is a well-known technology service.
Recommendations
  • AI detected serious security threats
Audit Metadata
Risk Level
HIGH
Analyzed
Jun 17, 2026, 12:22 AM
Security Audit — agent-trust-hub — runtime-python-toolchain