model-code-and-result-generator
Pass
Audited by Gen Agent Trust Hub on Sep 5, 2026
Risk Level: SAFEDYNAMIC_EXECUTIONCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [DYNAMIC_EXECUTION]: The script
scripts/build_result_contracts.pygenerates new Python executable files (result_contract_io.py,run_modeling.py, andq*_model.py) by writing pre-defined code templates to thepaper_output/code/modeling/directory. - [COMMAND_EXECUTION]: The
run_modeling.pyscript generated by this skill contains logic to iterate through and execute Python scripts (q*_model.py) usingsubprocess.run. - [INDIRECT_PROMPT_INJECTION]:
- Ingestion points: Reads metadata and configuration from
paper_output/plan/model_route.json,data_plan.json, andvisualization_plan.json. - Boundary markers: Absent; the skill does not use specific delimiters to separate untrusted data from instructions.
- Capability inventory: Includes file writing (
Path.write_text) and subprocess execution (subprocess.run) in the generated scripts. - Sanitization: Uses
safe_slugfor filename generation andjson.dumpsfor data interpolation, which reduces the risk of code injection if the input source is compromised. - Analysis: The skill facilitates a workflow where external configuration data is transformed into executable code, creating a surface where malicious input could influence the generated script behavior.
Audit Metadata