testing-handbook

Pass

Audited by Gen Agent Trust Hub on Aug 19, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONREMOTE_CODE_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill provides instructions to download various security tools from official repositories, including Honggfuzz from Google's GitHub and CodeQL from GitHub/Microsoft.
  • [EXTERNAL_DOWNLOADS]: Fetches a supporting repository from the author's GitHub account at https://github.com/woohyun212/mitrize.git to facilitate MITRE ATT&CK mapping.
  • [REMOTE_CODE_EXECUTION]: Instructs the user to execute a Python script (query_attack_md.py) retrieved from the author's repository to query security techniques.
  • [COMMAND_EXECUTION]: Contains numerous shell commands for compilation, fuzzing, and static analysis using tools like clang, afl-fuzz, and semgrep. These commands are consistent with the skill's stated purpose of security testing.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 19, 2026, 06:15 AM
Security Audit — agent-trust-hub — testing-handbook