embedded-testing

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and analyze external C source code provided by the user.\n
  • Ingestion points: The 'Input expected' section identifies C function source code as the primary data source.\n
  • Boundary markers: There are no explicit delimiters or instructions to ignore embedded prompts within the source code being analyzed.\n
  • Capability inventory: The skill translates analyzed code into complex test cases, stubs, and coverage matrices, which could be manipulated by adversarial comments or strings within the input code.\n
  • Sanitization: No validation or sanitization of the input code is specified to prevent prompt-based manipulation.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 10:20 AM
Security Audit — agent-trust-hub — embedded-testing