sn-da-large-file-analysis
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill implements performance-oriented data processing logic for large Excel files. No malicious patterns such as data exfiltration, unauthorized command execution, or persistence mechanisms were detected.- [DATA_EXPOSURE_EXFILTRATION]: The skill does not perform network operations or access sensitive configuration files. The file path checks in the font setup block are limited to specific, predictable locations for CJK fonts (e.g., /mnt/afs_agents/, /usr/share/fonts/) and do not attempt to traverse or expose sensitive directories.- [REMOTE_CODE_EXECUTION]: There is no use of dynamic execution functions like eval() or exec(). The instructions explicitly prohibit the use of subprocesses for searching fonts and forbid the installation of external packages via pip.- [PROMPT_INJECTION]: No adversarial prompt injection techniques or attempts to override system safety guidelines were found. The 'Mandatory Rules' section strictly defines technical constraints for memory management and performance optimization.- [INDIRECT_PROMPT_INJECTION]: While the skill processes external Excel data, it transforms this data into structured formats (DataFrames/Parquet) for mathematical analysis and visualization. It does not interpolate untrusted content into prompt templates or shell commands, minimizing the surface for indirect injection attacks.
Audit Metadata