clip

Pass

Audited by Gen Agent Trust Hub on Oct 1, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill provides instructions to install the CLIP library directly from OpenAI's official GitHub repository (https://github.com/openai/CLIP.git). This is the standard method for obtaining this specific tool from its source.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to process external data, including images and natural language text labels, to perform classification and search tasks.
  • Ingestion points: Processes images via PIL.Image.open() and text labels through clip.tokenize().
  • Boundary markers: None explicitly defined, as the model's architecture (contrastive learning) naturally treats inputs as features for comparison rather than instructions.
  • Capability inventory: Limited to tensor operations using PyTorch and local vector storage via ChromaDB. There are no capabilities for arbitrary command execution, file system modifications, or network data exfiltration.
  • Sanitization: Standard image preprocessing (resizing, normalization) is applied via the clip.load() function, which mitigates many common vision-based adversarial attacks at the input layer.
Audit Metadata
Risk Level
SAFE
Analyzed
Oct 1, 2026, 07:50 AM
Security Audit — agent-trust-hub — clip