tdd
Pass
Audited by Gen Agent Trust Hub on Sep 8, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill recommends reading a
CONTEXT.mdfile to ensure test vocabulary matches the project domain, which represents a surface for untrusted data ingestion. - Ingestion points:
SKILL.md(instruction to readCONTEXT.md). - Boundary markers: The instructions do not specify any delimiters or safety warnings for the agent when processing
CONTEXT.md. - Capability inventory: The TDD workflow described requires the agent to execute shell commands for running tests and verifying code behavior.
- Sanitization: No sanitization or validation of the content of the
CONTEXT.mdfile is described.
Audit Metadata