jest-skill

Pass

Audited by Gen Agent Trust Hub on Aug 10, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
  • [SAFE]: No malicious behavior, obfuscation, or suspicious command execution was found.
  • [EXTERNAL_DOWNLOADS]: The skill mentions official tools and libraries such as npx jest and @testing-library/react, which are standard in the software development ecosystem. The metadata correctly identifies the source repository as belonging to a well-known service provider.
  • [PROMPT_INJECTION]: The skill ingests user requirements for generating test code (Ingestion point: user requests triggered by keywords in SKILL.md), lacks explicit boundary markers to delimit user-provided data (Boundary markers: Absent), provides code generation and shell command suggestions (Capability inventory: jest, npx jest), and does not document specific content sanitization (Sanitization: Absent). However, because the skill lacks autonomous execution capabilities or access to sensitive credentials, this surface does not pose a functional security risk.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 10, 2026, 01:18 AM
Security Audit — agent-trust-hub — jest-skill