diagnose

Pass

Audited by Gen Agent Trust Hub on Jul 14, 2026

Risk Level: SAFEPROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill describes using various command-line tools including curl, git, test runners, and headless browsers. These tools are used within their standard functional scope for software debugging and reproduction of reported issues.\n- [PROMPT_INJECTION]: The skill defines a workflow that ingests untrusted external data, which represents a surface for indirect prompt injection.\n
  • Ingestion points: The agent is instructed to read log dumps, HAR files, and core dumps provided by users or external environments to assist in reproduction.\n
  • Boundary markers: The skill does not explicitly define delimiters or instructions to ignore embedded commands within these external artifacts.\n
  • Capability inventory: The environment allows for the execution of shell scripts, network requests via curl, and interaction with version control systems.\n
  • Sanitization: No specific sanitization or filtering logic is specified for the external diagnostic data before it is processed by the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 14, 2026, 07:25 AM
Security Audit — agent-trust-hub — diagnose