spike
Pass
Audited by Gen Agent Trust Hub on Aug 17, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill instructions advise using the realpath utility to resolve absolute file paths. This is a standard use of shell commands for local environment navigation and documentation.- [PROMPT_INJECTION]: The skill performs analysis on codebase files, which represents an indirect prompt injection attack surface. Evidence: 1. Ingestion points: Codebase files (lib/, tests/). 2. Boundary markers: Not specified. 3. Capability inventory: Use of realpath command. 4. Sanitization: None.
Audit Metadata