testability-architecture-auditor

Pass

Audited by Gen Agent Trust Hub on Sep 18, 2026

Risk Level: SAFE
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted code from external Flutter projects, which represents a surface for indirect prompt injection where malicious code comments could attempt to influence the audit report findings.
  • Ingestion points: Flutter source code files, pubspec.yaml, and directory structures are read and scanned using shell utilities.
  • Boundary markers: The skill does not employ specific delimiters or instructions to ignore potential commands within the scanned codebase.
  • Capability inventory: Capabilities are strictly restricted to read-only shell operations (grep, ls, find, wc, xargs) for pattern detection. No file-write, network, or arbitrary code execution capabilities are present.
  • Sanitization: The skill reads raw code content without sanitization to perform its architectural audit workflow.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 18, 2026, 12:24 PM
Security Audit — agent-trust-hub — testability-architecture-auditor