systematic-debugging
Pass
Audited by Gen Agent Trust Hub on Sep 5, 2026
Risk Level: SAFENO_CODE
Full Analysis
- [SAFE]: The skill is composed of purely descriptive markdown files providing methodological guidance for debugging. There are no executable files, binaries, or scripts provided within the skill package.
- [NO_CODE]: No functional code (e.g., Python, JavaScript, Shell) is present in the skill, precluding common attack vectors such as command execution or remote code execution.
- [INDIRECT_PROMPT_INJECTION]: The skill defines a workflow for analyzing external data such as crash logs, error messages, and program reproducers (SKILL.md, Step 1; root-cause-tracing.md). While this creates an ingestion point for potentially attacker-controlled content, the risk is assessed as safe because the skill provides reasoning guidelines rather than providing or invoking automated tools or execution capabilities that could be exploited by the data. The documentation does not specify boundary markers or sanitization logic for this external data, relying instead on the agent's internal safety protocols.
Audit Metadata