simpy

Pass

Audited by Gen Agent Trust Hub on Oct 1, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides a framework for building discrete-event simulations using the SimPy library, following established scientific methodologies.
  • [SAFE]: Bundled utility scripts (e.g., replication_runner.py, resource_monitor.py) incorporate extensive validation logic, such as checked_input_file and checked_output_file in scripts/_common.py, which prevent access to network URLs, symlinks, and non-regular files.
  • [SAFE]: The skill enforces strict resource constraints, including maximum simulation time (MAX_SIM_TIME), event budgets (MAX_EVENTS), and entity caps (MAX_ENTITIES), protecting against denial-of-service through infinite loops or memory exhaustion.
  • [SAFE]: Security best practices are observed in file operations, such as using tempfile.mkstemp and os.replace for atomic writes in atomic_write_bytes, and setting file permissions to 0o600 for user-only access.
  • [SAFE]: The code avoids dangerous dynamic execution patterns like eval() or exec(), and the documentation explicitly discourages the use of unverified remote resources or development builds.
Audit Metadata
Risk Level
SAFE
Analyzed
Oct 1, 2026, 07:50 AM
Security Audit — agent-trust-hub — simpy