tdd-workflows-tdd-red
Pass
Audited by Gen Agent Trust Hub on Apr 14, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is a legitimate development tool for creating failing unit, integration, and contract tests across multiple programming languages.- [PROMPT_INJECTION]: The skill ingests user input through the $ARGUMENTS variable to define test requirements. Ingestion point: $ARGUMENTS in SKILL.md. Boundary markers: Absent. Capability inventory: Includes file writing and command execution for test verification. Sanitization: None identified. Despite the ingestion surface, the instructions focus on legitimate test generation without malicious intent or safety bypasses.- [DATA_EXFILTRATION]: No patterns of sensitive data access or unauthorized network communication were identified. The skill instructions prioritize isolated test data and non-production environments.- [REMOTE_CODE_EXECUTION]: The skill references common testing frameworks but does not include commands for automated installation of external packages or execution of remote scripts from unverified sources.- [COMMAND_EXECUTION]: No privilege escalation or persistence mechanisms were detected. The skill utilizes internal task tools for testing automation within the agent's defined environment.
Audit Metadata