astropy
Pass
Audited by Gen Agent Trust Hub on Oct 1, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The skill provides extensive documentation for the legitimate Astropy scientific library. It incorporates proactive security guidance, such as advising against installation with elevated privileges and recommending the use of pinned versions for reproducibility.
- [EXTERNAL_DOWNLOADS]: The skill describes standard astronomical functionalities that involve network access, including object name resolution via remote services (e.g.,
SkyCoord.from_name()) and fetching remote FITS files (e.g.,fits.open()with S3/HTTP URIs). These behaviors are documented alongside clear warnings about disclosing sensitive target names or internal URIs to external providers. - [INDIRECT_PROMPT_INJECTION]:
- Ingestion points: The skill provides instructions for reading various scientific data formats, including FITS, CSV, HDF5, and VOTable, from both local and remote sources (SKILL.md, fits.md, tables.md).
- Boundary markers: No specific prompt boundary markers are defined for the ingested data.
- Capability inventory: The skill allows for file writing (
fits.writeto,Table.write) and network requests for data retrieval, but it lacks high-risk capabilities such as arbitrary shell command execution, persistence mechanisms, or dynamic code evaluation. - Sanitization: Relies on standard Astropy library parsing for structured scientific data.
Audit Metadata