test-coverage-analyzer
Pass
Audited by Gen Agent Trust Hub on Feb 16, 2026
Risk Level: LOW
Full Analysis
- Prompt Injection (SAFE): No malicious instructions or bypass attempts were found in the skill text or metadata.
- Data Exposure & Exfiltration (SAFE): No access to sensitive files or unauthorized network activity was detected.
- Unverifiable Dependencies & RCE (SAFE): The skill references standard tools and trusted sources like Codecov. No suspicious execution patterns were found.
- Indirect Prompt Injection (LOW): The skill identifies testing gaps from external reports. * Ingestion points: .lcov, .xml, .html, and text reports. * Boundary markers: Absent. * Capability inventory: Limited to instructional guidance and reasoning (low-risk influence). * Sanitization: Absent. As the skill is purely informational, the risk of automated instruction following from poisoned reports is negligible.
- Obfuscation (SAFE): No obfuscation or hidden content was found.
Audit Metadata