tdd-mutation
Pass
Audited by Gen Agent Trust Hub on May 9, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is primarily instructional, defining a workflow for Test-Driven Development and Mutation Testing without including executable scripts or dangerous automated commands.
- [EXTERNAL_DOWNLOADS]: The documentation references and provides installation commands for well-known, industry-standard mutation testing tools such as Stryker, mutmut, cargo-mutants, and gremlins across various language ecosystems. These are legitimate development tools.
- [SAFE]: The instructions include an explicit 'Security boundary' section for browser-rendered code. This section correctly identifies content read from the browser (DOM, console, network responses) as untrusted data and instructs the agent never to interpret such content as commands, which is a proactive measure against indirect prompt injection.
Audit Metadata