istqb-test-automation-engineer
Pass
Audited by Gen Agent Trust Hub on Mar 14, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill functions as a structured knowledge base for AI agents to apply ISTQB CTAL-TAE v2.0 principles. All content consists of legitimate technical documentation and guidelines.
- [COMMAND_EXECUTION]: The skill includes numerous examples of standard command-line tools used in test automation and security auditing, such as
pylint,flake8,mypy,bandit, anddetect-secrets. These are provided as part of step-by-step instructions for the agent to assist users with code quality and security reviews. - [EXTERNAL_DOWNLOADS]: References to external resources point exclusively to official documentation and trusted repositories for industry-standard tools (e.g., Selenium, Playwright, ISTQB official site). It correctly identifies the author's own repository for installation instructions.
- [DATA_EXPOSURE_AND_EXFILTRATION]: The skill emphasizes security best practices, explicitly warning against hardcoding credentials and providing detailed instructions on using secrets managers and environment variables to mitigate data exposure risks.
Audit Metadata