generate-tests

Pass

Audited by Gen Agent Trust Hub on Jul 20, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes shell commands to install dependencies (pnpm add), install browser binaries (npx playwright install), and run the test suite (npx playwright test). It also uses chmod to secure sensitive directories and files.
  • [EXTERNAL_DOWNLOADS]: The skill downloads the Playwright test framework and browser dependencies from the official NPM registry and Microsoft's browser distribution servers, which are well-known and trusted sources.
  • [PROMPT_INJECTION]: The skill exhibits an indirect prompt injection surface by consuming application maps and playbooks (potentially generated by other agent activities) to create executable TypeScript code. However, the skill includes explicit safeguards and instructions for human review before execution.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 20, 2026, 05:49 AM
Security Audit — agent-trust-hub — generate-tests