reading-isnt-proof

Pass

Audited by Gen Agent Trust Hub on Aug 21, 2026

Risk Level: SAFE
Full Analysis
  • [PROMPT_INJECTION]: The skill uses natural instructional language and technical terminology related to testing contracts. No attempts to override agent behavior, bypass safety filters, or extract system prompts were detected.
  • [DATA_EXFILTRATION]: There is no evidence of hardcoded credentials, access to sensitive file paths (such as .ssh or .env), or unauthorized network operations that could lead to data exfiltration.
  • [OBFUSCATION]: The content is provided in clear text. No Base64, zero-width characters, homoglyphs, or other obfuscation techniques were used to hide malicious intent or URLs.
  • [REMOTE_CODE_EXECUTION]: The skill does not perform remote downloads or execute scripts from external URLs. The code examples provided are static templates for local testing environments.
  • [COMMAND_EXECUTION]: No dangerous shell commands, privilege escalation attempts, or persistence mechanisms were found. The use of standard testing frameworks like pytest is appropriate for the skill's stated purpose.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 21, 2026, 08:11 AM
Security Audit — agent-trust-hub — reading-isnt-proof