symfony:tdd-with-pest
Pass
Audited by Gen Agent Trust Hub on Aug 9, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill instructs the agent to use the
Bashtool for running standard PHP development commands, includingcomposerfor dependency management,./vendor/bin/pestfor test execution, anddocker composefor containerized environments. These actions are strictly within the scope of a development workflow. - [EXTERNAL_DOWNLOADS]: The skill recommends installing well-known and widely used PHP testing libraries (
pestphp/pest,zenstruck/foundry,pestphp/pest-plugin-drift) from the official PHP package registry via Composer. These downloads are legitimate and pose no risk when used as directed. - [SAFE]: No malicious patterns such as prompt injection, credential exfiltration, or code obfuscation were detected. The skill uses non-sensitive placeholders for examples and correctly warns against using non-existent or unofficial plugins, promoting safer coding practices.
Audit Metadata