diagnose-fix-loop
Pass
Audited by Gen Agent Trust Hub on Jul 17, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill instructs the agent to execute reproduction paths and validation measurements to verify code changes during the loop iterations.\n- [PROMPT_INJECTION]: The skill has a surface for indirect prompt injection as it processes evidence data from the external
$diagnosedependency to make implementation decisions.\n - Ingestion points: Diagnosed evidence, reproduction outputs, and validation signals (file: SKILL.md).\n
- Boundary markers: No explicit markers are defined to isolate untrusted evidence from instructions.\n
- Capability inventory: File modification and shell command execution are required for implementation and verification (file: SKILL.md).\n
- Sanitization: No explicit sanitization or filtering of evidence data is performed, though the skill contains logical stop rules for sensitive environments.
Audit Metadata