xp-practices
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFE
Full Analysis
- [PROMPT_INJECTION] (SAFE): The content consists of educational guidance on agile methodologies. There are no attempts to override agent constraints, bypass safety filters, or extract system prompts.
- [DATA_EXFILTRATION] (SAFE): No sensitive file paths (e.g., SSH keys, env files) or hardcoded credentials were identified. The memory namespace mentioned (aqe/xp-practices/) is standard for state management and does not involve exfiltration.
- [REMOTE_CODE_EXECUTION] (SAFE): The provided code snippets are high-level orchestration abstractions (Typescript-like DSL) for the agent platform. They do not involve raw shell command execution, subprocess spawning, or dynamic evaluation of untrusted strings.
- [EXTERNAL_DOWNLOADS] (SAFE): The skill does not define any external dependencies or download remote scripts.
Audit Metadata