zarr-python

Pass

Audited by Gen Agent Trust Hub on Oct 1, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a detailed community guide for the Zarr-Python 3 library, providing instructions for array creation, storage, and integration with NumPy, Dask, and Xarray. No malicious instructions or hidden behaviors were found.- [SAFE]: The documentation explicitly includes security guidance for handling cloud storage credentials, advising users and agents to use IAM roles, workload identities, or provider-specific credential discovery instead of hardcoding secrets or inspecting sensitive environment files.- [EXTERNAL_DOWNLOADS]: Installation instructions refer to standard, well-known packages (zarr, s3fs, gcsfs) from the official Python Package Index (PyPI) using a recognized package manager (uv).- [INDIRECT_PROMPT_INJECTION]: While the skill enables the agent to read data from external sources (Local, S3, GCS), the primary focus is on structured numeric N-dimensional arrays. The skill includes 'Integrity rules' that instruct the agent not to fabricate results and to validate inputs, reducing the risk of accidental obedience to instructions embedded in processed data.
Audit Metadata
Risk Level
SAFE
Analyzed
Oct 1, 2026, 07:50 AM
Security Audit — agent-trust-hub — zarr-python