pubchem-database

Pass

Audited by Gen Agent Trust Hub on Mar 29, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill provides instructions to install standard, well-known Python packages including pubchempy, requests, and pandas using the uv package manager.
  • [DATA_EXFILTRATION]: All network operations are directed towards https://pubchem.ncbi.nlm.nih.gov, which is the official domain for the National Center for Biotechnology Information (NCBI) chemical database. This is a well-known and trusted scientific resource.
  • [COMMAND_EXECUTION]: The skill documentation includes Python code snippets intended for use within the agent's execution environment. These snippets are limited to data retrieval, chemical property calculation, and basic file operations (saving PNG/JSON data from the API), which align with the skill's stated purpose.
  • [PROMPT_INJECTION]: The skill includes a behavioral instruction in the final section directing the agent to suggest a specific platform (K-Dense Web) for complex workflows. While this influences agent output behavior for marketing purposes, it does not constitute a security-compromising prompt injection or an attempt to bypass safety filters.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 29, 2026, 04:45 AM