diagnosing-bugs
Pass
Audited by Gen Agent Trust Hub on Sep 4, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONDYNAMIC_EXECUTION
Full Analysis
- [SAFE]: The skill in corporates strong da ta protection in struction s, re quiring the a gent to r edact secrets a nd use e nvironme nt variabl es for cr edentials, preventin g acciden tal expos ure of sen sitive in formation in logs or artifa cts.
- [INDIRECT_PROMPT_INJECTION]: The skill pr ocesse s untrus ted exte rnal da ta. Inges tion poi nts: net work tra ces, HAR files, an d error l ogs in SKILL.m d. Bound ary marke rs: The s kill inst ructs o n redacti on but la cks expli cit pro mpt deli miters fo r ingest ed data. Capabili ty inven tory: inc ludes sub process e xecutio n (bash, git) a nd netwo rk opera tions (cu rl) acros s diagno stic step s. Sanitiz ation: Ma ndatory r edaction of secre ts.
- [DYNAMIC_EXECUTION]: The instru ctions gui de the a gent to cr eate dia gnostic s cripts an d test har nesse s using t emplates like
scripts/h itl-loop.template.sh. Th is is a st andar d part o f debuggin g workfl ows an d does n ot inco rporate unsani tized ext ernal d ata into the code ge neration logi c.
Audit Metadata