diagnose
Pass
Audited by Gen Agent Trust Hub on Sep 13, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONDYNAMIC_EXECUTIONCOMMAND_EXECUTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted data such as bug reports and codebase contents. \n- Ingestion points: User input (bug descriptions, error messages) and project files read during diagnosis. \n- Boundary markers: None identified in the provided instructions. \n- Capability inventory: Shell command execution (bash, curl, playwright) and file writing. \n- Sanitization: None described in the diagnostic workflow. \n- [DYNAMIC_EXECUTION]: The skill methodology relies on generating and running reproduction scripts (e.g., hitl-loop.template.sh) which involves executing dynamically created logic. \n- [COMMAND_EXECUTION]: The agent is instructed to run various shell commands and tools such as curl, CLI tools, and Playwright for debugging and building feedback loops.
Audit Metadata