webapp-testing

Pass

Audited by Gen Agent Trust Hub on Jul 28, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The script scripts/with_server.py uses subprocess.Popen with shell=True to launch local web servers (e.g., npm run dev). This is a standard functional requirement for managing development servers that often require shell features like command chaining (&&) or directory changes (cd). The tool is designed to operate on the user's local environment for testing purposes and does not interpolate untrusted external data into these commands.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 28, 2026, 05:45 AM
Security Audit — agent-trust-hub — webapp-testing