diagnose

Pass

Audited by Gen Agent Trust Hub on May 15, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill executes local commands to run tests and reproduction scripts as part of its diagnostic function.\n
  • Evidence: Instructions in Phase 2 describe building loops using 'vitest', 'curl', 'git bisect', and 'Playwright'.\n- [PROMPT_INJECTION]: The skill ingests potentially untrusted project data (logs, error reports, and artifacts), representing a surface for indirect prompt injection.\n
  • Evidence: Phase 1 and 2 specify gathering verbatim error messages, stack traces, and captured artifacts for analysis.\n- [SAFE]: No malicious intent, obfuscation, or unauthorized data exfiltration was detected. The skill is designed for local debugging and includes constraints to prevent unauthorized code modifications.
Audit Metadata
Risk Level
SAFE
Analyzed
May 15, 2026, 06:38 PM
Security Audit — agent-trust-hub — diagnose