dspy
Pass
Audited by Gen Agent Trust Hub on May 16, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill includes shell commands for installing the
dspypackage and its provider-specific extensions through standard package management tools.\n- [EXTERNAL_DOWNLOADS]: The documentation references the official GitHub repository for the Stanford NLP group for installing development versions of the library.\n- [REMOTE_CODE_EXECUTION]: Documentation for theProgramOfThoughtmodule is included, which is a library feature that generates and executes Python code to solve computational tasks.\n- [REMOTE_CODE_EXECUTION]: A code example in thereferences/examples.mdfile demonstrates an agent tool that uses theeval()function for mathematical calculations, including a configuration intended to restrict access to built-in functions.
Audit Metadata