data-scientist

Pass

Audited by Gen Agent Trust Hub on Aug 3, 2026

Risk Level: SAFEPROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [PROMPT_INJECTION]: The skill's primary function is to process and analyze user-provided datasets and task descriptions, which presents a surface for indirect prompt injection. * Ingestion points: User-supplied data files (CSV, JSON, SQL), external API data, and analytical requirements described in project tasks. * Boundary markers: Instructions do not define specific delimiters or guidelines to ignore embedded instructions within processed data. * Capability inventory: The persona is empowered to use powerful scripting environments (Python, R), database systems (SQL, BigQuery, Snowflake), and containerization tools (Docker). * Sanitization: The skill does not include specific steps for sanitizing or validating external content before it is processed by the agent.
  • [EXTERNAL_DOWNLOADS]: The skill mentions the use of and interaction with services and libraries from well-known and trusted providers including Google Cloud Platform, Amazon Web Services, Microsoft Azure, and the Apache Software Foundation.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 3, 2026, 09:33 AM
Security Audit — agent-trust-hub — data-scientist