test-xcode

Pass

Audited by Gen Agent Trust Hub on Apr 1, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Fetches the xcodebuildmcp tool from Sentry's official NPM or Homebrew repositories.
  • [COMMAND_EXECUTION]: Instructs the agent to perform standard iOS development tasks using xcrun simctl and the XcodeBuildMCP server tools.
  • [PROMPT_INJECTION]: The skill ingests untrusted content via build and simulator logs (found in SKILL.md; ingestion: build errors and get_sim_logs tool outputs; boundaries: none; capabilities: simulator and app management; sanitization: none), presenting a surface for indirect prompt injection that is typical for diagnostic workflows.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 1, 2026, 09:59 AM