api-test-generator

Pass

Audited by Gen Agent Trust Hub on Jul 21, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill provides instructional content for API testing and does not include any executable code or malicious patterns.
  • [PROMPT_INJECTION]: The skill exhibits an indirect prompt injection surface by processing untrusted user input to perform file and command-line operations without explicit boundary markers.
  • Ingestion points: User-provided requests containing trigger phrases like 'api test generator' defined in SKILL.md.
  • Boundary markers: No specific delimiters or warnings to ignore instructions within the user data are provided in the instructions.
  • Capability inventory: The skill uses Read, Write, Edit, Bash(cmd:*), and Grep tools to fulfill requests.
  • Sanitization: No sanitization or validation logic is specified for handling external user input.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 21, 2026, 11:30 AM
Security Audit — agent-trust-hub — api-test-generator