fetch-chart-data
Pass
Audited by Gen Agent Trust Hub on Sep 8, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill provides instructions to fetch data and metadata from
ourworldindata.org. These downloads target the official domain of the skill's authoring organization. - [COMMAND_EXECUTION]: The skill suggests using shell commands like
curl,cut, andjqto retrieve and filter data. These commands are standard for the described purpose and target the vendor's infrastructure. - [INDIRECT_PROMPT_INJECTION]: The skill involves processing external data (CSV and JSON) from
ourworldindata.org. This creates a surface for indirect prompt injection, though the source is a well-known and reputable data organization. - Ingestion points: External CSV and JSON metadata files (SKILL.md).
- Boundary markers: None explicitly defined in the skill instructions.
- Capability inventory:
curl,cat, andjqvia the Bash tool (SKILL.md frontmatter). - Sanitization: Not specified in the instructions.
Audit Metadata