generate-abap-unit-test

Pass

Audited by Gen Agent Trust Hub on May 12, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses tools like SAPWrite and SAPActivate to deploy generated ABAP code to the development system. This is the intended purpose of the skill to create and run unit tests.
  • [EXTERNAL_DOWNLOADS]: It fetches documentation and code patterns from mcp-sap-docs using a search tool to ensure generated tests follow SAP best practices.
  • [SAFE]: The skill exhibits an indirect prompt injection surface (Category 8) by processing existing ABAP source code to inform test generation. However, this is inherent to the task of code analysis and generation in a development context.
  • Ingestion points: Class source code retrieved via SAPRead (Step 1a).
  • Boundary markers: No explicit delimiters are used when passing class source to the analysis prompt.
  • Capability inventory: Includes file-write (SAPWrite), code activation (SAPActivate), and execution (SAPDiagnose).
  • Sanitization: None identified in the prompt logic.
Audit Metadata
Risk Level
SAFE
Analyzed
May 12, 2026, 02:04 PM
Security Audit — agent-trust-hub — generate-abap-unit-test