antithesis-triage

Pass

Audited by Gen Agent Trust Hub on Mar 11, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill recommends installing the agent-browser tool from vercel-labs, which is a recognized and trusted source.\n- [COMMAND_EXECUTION]: The skill utilizes browser automation to run JavaScript scripts that extract data from bug reports. This is the primary intended functionality of the skill.\n- [PROMPT_INJECTION]: The skill ingests untrusted content from bug logs and report descriptions, which is a necessary step for bug triage.\n
  • Ingestion points: Report and log data collected from the browser DOM in assets/logs/read-visible-events.js and assets/report/findings-grouped.js.\n
  • Boundary markers: None identified.\n
  • Capability inventory: Includes browser navigation and script evaluation via the agent-browser tool.\n
  • Sanitization: Data is trimmed of whitespace but is otherwise processed as raw text for the agent's analysis.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 11, 2026, 12:59 PM