testing-handbook
Pass
Audited by Gen Agent Trust Hub on Aug 19, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONREMOTE_CODE_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill provides instructions to download various security tools from official repositories, including Honggfuzz from Google's GitHub and CodeQL from GitHub/Microsoft.
- [EXTERNAL_DOWNLOADS]: Fetches a supporting repository from the author's GitHub account at
https://github.com/woohyun212/mitrize.gitto facilitate MITRE ATT&CK mapping. - [REMOTE_CODE_EXECUTION]: Instructs the user to execute a Python script (
query_attack_md.py) retrieved from the author's repository to query security techniques. - [COMMAND_EXECUTION]: Contains numerous shell commands for compilation, fuzzing, and static analysis using tools like
clang,afl-fuzz, andsemgrep. These commands are consistent with the skill's stated purpose of security testing.
Audit Metadata