four-question-validation

Pass

Audited by Gen Agent Trust Hub on Apr 1, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists of instructional text guiding the agent through a self-verification process. No malicious code or exfiltration patterns were identified.- [COMMAND_EXECUTION]: The skill suggests running standard local test runners such as npm, vitest, and playwright. These are legitimate development tools used for verifying code implementation.- [SAFE]: Indirect Prompt Injection surface analysis: 1. Ingestion points: Test suite outputs and requirement specification documents. 2. Boundary markers: None present in instructions. 3. Capability inventory: Execution of local test runners (npm, npx). 4. Sanitization: None present. This is a standard surface for a developer-oriented skill and is considered safe for its intended use case.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 1, 2026, 05:35 AM
Security Audit — agent-trust-hub — four-question-validation