simulation-orchestrator
Pass
Audited by Gen Agent Trust Hub on Mar 27, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill operates entirely within a secure sandbox using only Python standard library modules. No external dependencies or remote script executions are involved.
- [SAFE]: Command injection protections are implemented in
scripts/campaign_manager.py. The_validate_command_templatefunction uses regular expressions to block dangerous shell operators (e.g.,;,|,&, backticks), andshlex.quote()is applied to all file paths before they are interpolated into shell commands. - [SAFE]: The skill incorporates robust defenses against malicious or malformed data in
scripts/result_aggregator.py. It enforces a 10MB file size limit (MAX_RESULT_FILE_SIZE) and a maximum JSON nesting depth of 10 (MAX_JSON_DEPTH) to prevent resource exhaustion or stack overflow attacks. - [SAFE]: To mitigate indirect prompt injection,
scripts/result_aggregator.pyincludes a_sanitize_valuefunction that truncates strings from external result files and strips control characters, preventing malicious payloads from influencing the agent's behavior. - [SAFE]: The skill limits its own privilege by requesting only a minimal set of tools (
Read,Write,Grep,Glob) and explicitly excluding theBashtool, ensuring the agent cannot autonomously execute the commands it generates for the user.
Audit Metadata