dnanexus-integration

Pass

Audited by Gen Agent Trust Hub on Jun 27, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSDATA_EXFILTRATIONREMOTE_CODE_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The reference documentation and examples demonstrate the use of subprocess.check_call() to execute bioinformatics tools and Docker commands. This is standard practice within the DNAnexus execution environment for running genomics pipelines.
  • [EXTERNAL_DOWNLOADS]: The skill provides instructions for installing the dxpy SDK via pip and various system dependencies (e.g., samtools, bwa) through official package managers and the DNAnexus asset system. These downloads originate from trusted registries and the platform's own infrastructure.
  • [DATA_EXFILTRATION]: The skill facilitates the bidirectional transfer of files between the local environment and the DNAnexus cloud platform. This functionality is the primary intended use of the skill for genomics data management.
  • [REMOTE_CODE_EXECUTION]: The skill describes the process of building, deploying, and launching apps that run on the DNAnexus platform's cloud worker nodes. This is the core functionality of the service and is executed within isolated, platform-managed virtual environments.
  • [SAFE]: The skill processes genomics data files (FASTQ, BAM, VCF). While these represent an ingestion surface for potentially untrusted data, the processing is handled via established bioinformatics tools within isolated cloud environments, presenting no significant risk to the agent or local system.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 27, 2026, 11:42 AM
Security Audit — agent-trust-hub — dnanexus-integration