test-fixing

Pass

Audited by Gen Agent Trust Hub on Sep 17, 2026

Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill instructs the agent to execute shell commands such as make test, git diff, and uv run pytest. These operations are standard for identifying, analyzing, and verifying fixes for software bugs and align with the skill's stated purpose.
  • [INDIRECT_PROMPT_INJECTION]: The skill operates by ingesting data that could potentially be influenced by an attacker if the codebase or test outputs are compromised.
  • Ingestion points: Reads test execution logs and project source code files during the systematic fixing process.
  • Boundary markers: None explicitly defined to separate untrusted test output from the agent's internal reasoning.
  • Capability inventory: The skill possesses the ability to execute shell commands (via make and pytest) and perform file modifications using editing tools.
  • Sanitization: No specific sanitization logic is implemented for the test output before it is processed by the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 17, 2026, 09:34 PM
Security Audit — agent-trust-hub — test-fixing