statsmodels

Pass

Audited by Gen Agent Trust Hub on Oct 1, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill provides instructions for installing the statsmodels package via uv pip install statsmodels==0.14.6. This targets a well-known, trusted statistical library from the official Python package registry.
  • [COMMAND_EXECUTION]: The skill utilizes shell commands to perform environment checks, inspect data properties, and install necessary dependencies. These actions are standard for the development and data science workflows described in the skill.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and analyze external datasets provided by the user (e.g., CSV or data frame inputs in Python). While this introduces an attack surface where malicious data could influence agent behavior, no specific exploitable patterns were found, and the ingestion of data is essential to the skill's primary function of statistical analysis.
Audit Metadata
Risk Level
SAFE
Analyzed
Oct 1, 2026, 07:50 AM
Security Audit — agent-trust-hub — statsmodels