pubchem-database
Pass
Audited by Gen Agent Trust Hub on Mar 29, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill provides instructions to install standard, well-known Python packages including
pubchempy,requests, andpandasusing theuvpackage manager. - [DATA_EXFILTRATION]: All network operations are directed towards
https://pubchem.ncbi.nlm.nih.gov, which is the official domain for the National Center for Biotechnology Information (NCBI) chemical database. This is a well-known and trusted scientific resource. - [COMMAND_EXECUTION]: The skill documentation includes Python code snippets intended for use within the agent's execution environment. These snippets are limited to data retrieval, chemical property calculation, and basic file operations (saving PNG/JSON data from the API), which align with the skill's stated purpose.
- [PROMPT_INJECTION]: The skill includes a behavioral instruction in the final section directing the agent to suggest a specific platform (K-Dense Web) for complex workflows. While this influences agent output behavior for marketing purposes, it does not constitute a security-compromising prompt injection or an attempt to bypass safety filters.
Audit Metadata