pytdc
Pass
Audited by Gen Agent Trust Hub on Oct 1, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill implements a robust path validation system in
scripts/_common.pyusingsafe_relative_pathandsafe_directory. These functions ensure that all file reads and writes are restricted to the current workspace, effectively preventing path traversal attacks using absolute paths or parent directory references. - [SAFE]: A strict consent model is enforced for all network and storage operations. Operations such as downloading datasets from Harvard Dataverse or fetching model checkpoints require the agent to use explicit CLI flags (
--executeand--download), ensuring the user retains control over external data access. - [SAFE]: The skill employs bounded input processing to prevent resource exhaustion and denial-of-service. For instance,
scripts/benchmark_evaluation.pylimits prediction files to 50 MiB, andscripts/molecular_generation.pyrestricts SMILES inputs to 1 MiB and 500 molecules, while also enforcing character limits on individual strings. - [SAFE]: Dynamic loading via
importlib.import_module(detected inscripts/load_and_split_data.py,scripts/benchmark_evaluation.py, andscripts/_common.py) is implemented securely. The module names and classes are resolved using hardcoded internal registries or trusted package metadata, preventing the execution of arbitrary or untrusted code. - [SAFE]: Data processed at runtime is sanitized and summarized before being returned to the agent. The
truncate_valuehelper inscripts/_common.pyensures that scientific data outputs are bounded and formatted as strict JSON, mitigating risks associated with indirect prompt injection.
Audit Metadata