propositional-logic

Pass

Audited by Gen Agent Trust Hub on Sep 18, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses the Bash tool to execute Python scripts (scripts/z3_solve.py and scripts/sympy_compute.py) for logic satisfiability and truth table generation.
  • [INDIRECT_PROMPT_INJECTION]: The skill exposes a potential command injection surface by interpolating untrusted user input (logic formulas) directly into shell commands.
  • Ingestion points: User-provided logic formulas passed as arguments to the sat and truthtable commands.
  • Boundary markers: None present; the formulas are wrapped in double quotes in the examples, but there are no instructions to sanitize or validate the content.
  • Capability inventory: The skill has access to the Bash tool and can execute arbitrary scripts within the runtime.harness environment.
  • Sanitization: There is no evidence of input validation or escaping for the formula strings before they are executed in the shell.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 18, 2026, 05:11 PM
Security Audit — agent-trust-hub — propositional-logic