clinicaltrials-database
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
- [External Downloads] (SAFE): Queries the public ClinicalTrials.gov API. This is expected behavior for the skill.
- [Data Exposure & Exfiltration] (SAFE): No access to sensitive local files or hardcoded secrets found.
- [Command Execution] (SAFE): No shell execution or subprocess calls identified.
- [Indirect Prompt Injection] (SAFE): Processes external API data. While an ingestion point exists, no dangerous capabilities are available to exploit. Evidence: Ingestion points (API response in search_studies), Boundary markers (none), Capability inventory (none), Sanitization (none).
Audit Metadata