target-prioritization
Pass
Audited by Gen Agent Trust Hub on Sep 2, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill implements a legitimate scientific workflow for drug discovery. All external data requests are directed to official, well-known bioinformatics API endpoints (ebi.ac.uk, ncbi.nlm.nih.gov, opentargets.org, proteinatlas.org, and uniprot.org).
- [COMMAND_EXECUTION]: The
scripts/orchestrate.pyfile usessubprocess.runto execute internal fetcher scripts in parallel. This is a standard orchestration pattern and is implemented safely using command lists rather than shell strings, which prevents shell injection attacks. - [INDIRECT_PROMPT_INJECTION]: The skill processes user-provided gene lists (CSV or text) to generate a report that is later interpreted by an AI agent. While this constitutes an attack surface for untrusted data, the risk is negligible as the input is strictly treated as query parameters for scientific databases and the final rationales are grounded in the retrieved structured data.
- Ingestion points:
orchestrate.pyreads gene symbols from the--inputfile;aggregate.pyreads expression data from the--input-csvfile. - Boundary markers: Absent for the input data processing, but the data is constrained by API validation.
- Capability inventory: Subprocess execution (
orchestrate.py), network API access (fetch_*.py), and file system writes (aggregate.py). - Sanitization: Gene symbols are validated against scientific databases; the report template encourages factual grounding and discourages hallucination.
Audit Metadata