datalad

Pass

Audited by Gen Agent Trust Hub on Oct 1, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill facilitates data management via DataLad, a standard and reputable open-source toolset for research data provenance and versioning.
  • [SAFE]: External dataset references point to well-known community repositories such as OpenNeuro and DANDI, which are recognized sources in the neuroimaging and neurophysiology domains.
  • [SAFE]: Installation procedures utilize standard package managers (PyPI) for recognized tools (datalad, git-annex, datalad-container) and provide legitimate advice on binary dependencies.
  • [SAFE]: The skill promotes secure credential handling by recommending system keyrings and environment variables, and explicitly cautions against the high-risk practice of committing secrets to repository history.
  • [SAFE]: Computational provenance features (datalad run) are presented as a means of documenting research steps rather than a vector for arbitrary code execution, consistent with the tool's primary purpose.
Audit Metadata
Risk Level
SAFE
Analyzed
Oct 1, 2026, 07:50 AM
Security Audit — agent-trust-hub — datalad