android-testing

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests and analyzes project source code, which serves as an attack surface for indirect prompt injection where malicious content in the code could attempt to influence the agent's behavior.
  • Ingestion points: The skill is designed to evaluate Kotlin/Java source code, XML layout files, and Gradle build configurations across the project structure (specifically src/test/ and src/androidTest/).
  • Boundary markers: The skill does not define specific delimiters or instructions to treat codebase content as untrusted or to ignore potentially malicious embedded instructions.
  • Capability inventory: The skill generates and executes shell commands through the Gradle build tool (./gradlew) and Android Debug Bridge (adb), and it utilizes the UI Automator framework for interacting with system-level UI components.
  • Sanitization: No explicit sanitization or validation of the ingested code content is performed before it is used to inform the agent's actions or recommendations.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 09:56 AM
Security Audit — agent-trust-hub — android-testing