diagnose-fix-loop

Pass

Audited by Gen Agent Trust Hub on Jul 17, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill instructs the agent to execute reproduction paths and validation measurements to verify code changes during the loop iterations.\n- [PROMPT_INJECTION]: The skill has a surface for indirect prompt injection as it processes evidence data from the external $diagnose dependency to make implementation decisions.\n
  • Ingestion points: Diagnosed evidence, reproduction outputs, and validation signals (file: SKILL.md).\n
  • Boundary markers: No explicit markers are defined to isolate untrusted evidence from instructions.\n
  • Capability inventory: File modification and shell command execution are required for implementation and verification (file: SKILL.md).\n
  • Sanitization: No explicit sanitization or filtering of evidence data is performed, though the skill contains logical stop rules for sensitive environments.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 17, 2026, 01:00 PM
Security Audit — agent-trust-hub — diagnose-fix-loop