reading-isnt-proof
Pass
Audited by Gen Agent Trust Hub on Aug 21, 2026
Risk Level: SAFE
Full Analysis
- [PROMPT_INJECTION]: The skill uses natural instructional language and technical terminology related to testing contracts. No attempts to override agent behavior, bypass safety filters, or extract system prompts were detected.
- [DATA_EXFILTRATION]: There is no evidence of hardcoded credentials, access to sensitive file paths (such as .ssh or .env), or unauthorized network operations that could lead to data exfiltration.
- [OBFUSCATION]: The content is provided in clear text. No Base64, zero-width characters, homoglyphs, or other obfuscation techniques were used to hide malicious intent or URLs.
- [REMOTE_CODE_EXECUTION]: The skill does not perform remote downloads or execute scripts from external URLs. The code examples provided are static templates for local testing environments.
- [COMMAND_EXECUTION]: No dangerous shell commands, privilege escalation attempts, or persistence mechanisms were found. The use of standard testing frameworks like pytest is appropriate for the skill's stated purpose.
Audit Metadata