hilt-to-koin-migration
Pass
Audited by Gen Agent Trust Hub on Aug 30, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill provides shell commands using grep and find to verify the state of the dependency injection migration. These are used to audit the local codebase for specific Kotlin code patterns and are restricted to read-only search operations.
- [INDIRECT_PROMPT_INJECTION]: The skill defines an attack surface where the agent processes external codebase data via shell utilities. Ingestion points: Local Kotlin source files scanned via grep. Boundary markers: None. Capability inventory: Read-only shell utilities (grep, find). Sanitization: None.
Audit Metadata