systematic-debugging
Pass
Audited by Gen Agent Trust Hub on Mar 10, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The script
find-polluter.shexecutes local test files usingnpm testto identify state pollution side effects. The skill also suggests using shell commands likesecurity list-keychainsandgit initfor diagnostic purposes inSKILL.mdandroot-cause-tracing.mdduring the debugging process.\n- [PROMPT_INJECTION]: The skill defines an indirect prompt injection surface as it instructs the agent to process external data (Ingestion points: Phase 1 error messages, stack traces, and logs inSKILL.md). It lacks boundary markers and explicit sanitization for this data. The agent's capability inventory includes shell execution and file system access.\n- [PROMPT_INJECTION]: Filestest-pressure-1.md,test-pressure-2.md, andtest-pressure-3.mdcontain test cases that use adversarial framing, such as high-stakes scenarios and urgency, to evaluate agent compliance with its instructions under pressure.
Audit Metadata