simpy
Pass
Audited by Gen Agent Trust Hub on Oct 1, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides a framework for building discrete-event simulations using the SimPy library, following established scientific methodologies.
- [SAFE]: Bundled utility scripts (e.g.,
replication_runner.py,resource_monitor.py) incorporate extensive validation logic, such aschecked_input_fileandchecked_output_fileinscripts/_common.py, which prevent access to network URLs, symlinks, and non-regular files. - [SAFE]: The skill enforces strict resource constraints, including maximum simulation time (
MAX_SIM_TIME), event budgets (MAX_EVENTS), and entity caps (MAX_ENTITIES), protecting against denial-of-service through infinite loops or memory exhaustion. - [SAFE]: Security best practices are observed in file operations, such as using
tempfile.mkstempandos.replacefor atomic writes inatomic_write_bytes, and setting file permissions to0o600for user-only access. - [SAFE]: The code avoids dangerous dynamic execution patterns like
eval()orexec(), and the documentation explicitly discourages the use of unverified remote resources or development builds.
Audit Metadata