tdd-guide
Pass
Audited by Gen Agent Trust Hub on Jul 30, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill implementation utilizes localized Python scripts for all processing tasks, including test case generation (
test_generator.py), coverage report parsing (coverage_analyzer.py), and complexity metrics calculation (metrics_calculator.py). These scripts rely exclusively on standard Python libraries such asjson,re, andxml.etree.ElementTree.- [SAFE]: Analysis of the source code confirms the absence of network-reaching functions, access to sensitive filesystem paths (e.g.,.sshor.env), or hardcoded credentials.- [SAFE]: The documentation provides integration examples for reputable services like GitHub Actions and Codecov, which is standard for developer-oriented tools and does not represent a security risk.- [SAFE]: While the skill processes user-provided source code and coverage reports, it lacks the dangerous capabilities (such as arbitrary command execution or network exfiltration) required to weaponize indirect prompt injection attempts, resulting in a safe execution profile.
Audit Metadata