jest-skill
Pass
Audited by Gen Agent Trust Hub on Aug 10, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
- [SAFE]: No malicious behavior, obfuscation, or suspicious command execution was found.
- [EXTERNAL_DOWNLOADS]: The skill mentions official tools and libraries such as npx jest and @testing-library/react, which are standard in the software development ecosystem. The metadata correctly identifies the source repository as belonging to a well-known service provider.
- [PROMPT_INJECTION]: The skill ingests user requirements for generating test code (Ingestion point: user requests triggered by keywords in SKILL.md), lacks explicit boundary markers to delimit user-provided data (Boundary markers: Absent), provides code generation and shell command suggestions (Capability inventory: jest, npx jest), and does not document specific content sanitization (Sanitization: Absent). However, because the skill lacks autonomous execution capabilities or access to sensitive credentials, this surface does not pose a functional security risk.
Audit Metadata