play-billing-library-version-upgrade

Pass

Audited by Gen Agent Trust Hub on Sep 19, 2026

Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTIONMETADATA_POISONING
Full Analysis
  • [COMMAND_EXECUTION]: The skill runs shell commands via the Gradle wrapper (e.g., './gradlew build', './gradlew test', './gradlew sync') to verify project stability and successful migration during the stepped upgrade process.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes project configuration files and source code to perform semantic refactoring, which creates a vulnerability surface for instructions embedded in the analyzed code to influence agent behavior. 1. Ingestion points: The skill reads 'build.gradle', 'build.gradle.kts', 'libs.versions.toml', and project source files during the discovery and refactoring phases. 2. Boundary markers: No delimiters or explicit instructions are provided to the agent to disregard potential natural language instructions found within the ingested project code. 3. Capability inventory: The skill has shell execution and file modification capabilities for project maintenance. 4. Sanitization: No sanitization or escaping is performed on code ingested for intent analysis.
  • [METADATA_POISONING]: The skill's frontmatter contains a future 'last-updated' date (2026-07-02) and claims authorship by 'Google LLC', which represents a discrepancy compared to the provided external author context of 'talissonvitorino'.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 19, 2026, 01:15 PM
Security Audit — agent-trust-hub — play-billing-library-version-upgrade