backend
Pass
Audited by Gen Agent Trust Hub on Jun 16, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill executes a local project binary located at
./bin/hushh. This tool is used for retrieving protocol help information, launching local development terminal environments (e.g.,backendandstackmodes), and managing backend operations. - [COMMAND_EXECUTION]: The skill invokes
pytestviapython3 -m pytestto execute backend tests within theconsent-protocoldirectory as part of its required verification workflow. - [PROMPT_INJECTION]: The skill possesses an indirect prompt injection surface as it ingests various repository files while maintaining command execution capabilities.
- Ingestion points: The skill reads
consent-protocol/README.md,consent-protocol/docs/README.md,docs/reference/architecture/architecture.md, anddocs/project_context_map.md. - Boundary markers: No explicit delimiters or instructions to ignore embedded commands are present in the documentation ingestion process.
- Capability inventory: The skill has the capability to execute shell commands through the
./bin/hushhbinary and thepytesttesting framework. - Sanitization: There is no evidence of sanitization or validation of the content within the ingested markdown files before they are processed by the agent.
Audit Metadata