interpolation
Pass
Audited by Gen Agent Trust Hub on Sep 18, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill uses the
Bashtool to execute Python code viauv runand calls a local scriptscripts/sympy_compute.py. These actions are appropriate for numerical interpolation tasks.- [INDIRECT_PROMPT_INJECTION]: The skill provides command templates that take data points as input. This creates an attack surface where untrusted data could be processed by shell commands. - Ingestion points: Coordinate values and arrays passed to Scipy and Sympy commands in the
Tool Commandssection. - Boundary markers: None are provided to separate data from instructions.
- Capability inventory: Use of
Bashtool for script execution. - Sanitization: No explicit validation or sanitization of input data is defined in the skill instructions.
Audit Metadata