tdd-workflow
Pass
Audited by Gen Agent Trust Hub on Sep 11, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTIONDYNAMIC_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill provides instructions for running standard software testing commands to verify implementation changes.
- Evidence:
SKILL.mdandreferences/EXAMPLES.mdcontain examples of executing test runners such asnpm test,pytest,go test ./..., andcargo testusing theBashtool. - [INDIRECT_PROMPT_INJECTION]: The skill's workflow involves reading and executing tests against project source code, which creates a theoretical surface for data-driven injection.
- Ingestion points: Project source code and test files (e.g.,
cart.test.ts,test_dashboard.py) read by the agent to perform the TDD loop. - Boundary markers: The skill does not define specific isolation markers or instructions to disregard embedded commands in the code being tested.
- Capability inventory: The agent has access to the
Bashtool to run package managers and test suites across multiple languages. - Sanitization: No sanitization is performed on the code content before it is processed or used in test execution commands.
- [DYNAMIC_EXECUTION]: The documentation includes educational content on advanced testing strategies that involve runtime environment modifications.
- Evidence:
references/LEGACY_CODE.mddescribes "Link seams" and mentionsLD_PRELOADas a mechanism for swapping implementations at build or import time. This is presented as a strategy for testing legacy systems rather than an instruction for malicious behavior.
Audit Metadata