android-testing
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill ingests and analyzes project source code, which serves as an attack surface for indirect prompt injection where malicious content in the code could attempt to influence the agent's behavior.
- Ingestion points: The skill is designed to evaluate Kotlin/Java source code, XML layout files, and Gradle build configurations across the project structure (specifically
src/test/andsrc/androidTest/). - Boundary markers: The skill does not define specific delimiters or instructions to treat codebase content as untrusted or to ignore potentially malicious embedded instructions.
- Capability inventory: The skill generates and executes shell commands through the Gradle build tool (
./gradlew) and Android Debug Bridge (adb), and it utilizes the UI Automator framework for interacting with system-level UI components. - Sanitization: No explicit sanitization or validation of the ingested code content is performed before it is used to inform the agent's actions or recommendations.
Audit Metadata