test-fixing
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill instructs the agent to execute shell commands such as
make test,git diff, anduv run pytest. These operations are standard for identifying, analyzing, and verifying fixes for software bugs and align with the skill's stated purpose. - [INDIRECT_PROMPT_INJECTION]: The skill operates by ingesting data that could potentially be influenced by an attacker if the codebase or test outputs are compromised.
- Ingestion points: Reads test execution logs and project source code files during the systematic fixing process.
- Boundary markers: None explicitly defined to separate untrusted test output from the agent's internal reasoning.
- Capability inventory: The skill possesses the ability to execute shell commands (via
makeandpytest) and perform file modifications using editing tools. - Sanitization: No specific sanitization logic is implemented for the test output before it is processed by the agent.
Audit Metadata