building-python-mcp-servers

Pass

Audited by Gen Agent Trust Hub on Sep 7, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides defensive programming guidelines, specifically advising against dangerous practices like shell=True in subprocess calls and recommending strict input validation.
  • [INDIRECT_PROMPT_INJECTION]: The skill identifies and discusses the attack surface for indirect prompt injection when processing untrusted tool inputs or file contents, providing remediation strategies for developers.
  • [EXTERNAL_DOWNLOADS]: The skill contains a reference to an external source repository for attribution: https://github.com/wdm0006/python-skills.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 7, 2026, 11:01 AM
Security Audit — agent-trust-hub — building-python-mcp-servers