quality-integration-testing

Pass

Audited by Gen Agent Trust Hub on Jul 8, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Fetches official Docker container images for PostgreSQL, Kafka, and WireMock from established public registries during the test lifecycle setup (documented in SKILL.md and multiple reference files).
  • [COMMAND_EXECUTION]: Suggests the execution of standard development tools and test runners via shell commands, including 'npx vitest', 'docker pull', and 'npx prisma migrate'. It also provides examples using the Node.js 'execSync' module for managing database migrations within test environments.
  • [PROMPT_INJECTION]: Identifies an indirect prompt injection surface as the skill ingests service interaction definitions and configuration data; additionally, multiple reference files (e.g., 'architecture-patterns.md', 'error-handling.md') contain 150 redundant sections of technical jargon, which represents an irregular document structure but contains no observed malicious instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 8, 2026, 12:26 PM
Security Audit — agent-trust-hub — quality-integration-testing