skill-debug

Pass

Audited by Gen Agent Trust Hub on May 17, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: Employs shell commands such as git diff and git log to analyze codebase changes and identify potential bug origins during the investigation phase.
  • [COMMAND_EXECUTION]: Uses local shell logic to manage session state in temporary files (/tmp/octopus-freeze-...) and executes local orchestration scripts (orchestrate.sh) as part of its diagnostic workflow.
  • [PROMPT_INJECTION]: Utilizes forceful instructional language ('MANDATORY COMPLIANCE', 'Iron Law') to ensure the agent follows a systematic debugging procedure rather than attempting unverified fixes.
  • [PROMPT_INJECTION]: The skill defines a process for ingesting external data (error logs, stack traces) while possessing code-modification capabilities.
  • Ingestion points: Technical logs, error messages, and reproduction outputs (SKILL.md).
  • Boundary markers: Absent.
  • Capability inventory: Shell execution (git, echo, orchestrate.sh) and file system modification (Phase 4).
  • Sanitization: Absent.
Audit Metadata
Risk Level
SAFE
Analyzed
May 17, 2026, 07:25 AM
Security Audit — agent-trust-hub — skill-debug