iOS Testing Expert
Warn
Audited by Gen Agent Trust Hub on Feb 16, 2026
Risk Level: MEDIUMEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- EXTERNAL_DOWNLOADS (MEDIUM): The skill references external GitHub repositories
https://github.com/Quick/Quick.gitandhttps://github.com/Quick/Nimble.gitas dependencies in the BDD testing section. According to the [TRUST-SCOPE-RULE], these are considered unverifiable dependencies because they do not belong to the pre-approved trusted organization list. - COMMAND_EXECUTION (LOW): The skill provides examples of using standard Xcode command-line tools (
xcodebuildandxcrun) for running tests and generating coverage reports. These are legitimate tools for the skill's stated purpose of iOS development. - CREDENTIALS_UNSAFE (SAFE): Dummy credentials found in the XCUITest example (
test@example.com,password123) are standard instructional placeholders and do not pose a risk of real-world exposure. - PROMPT_INJECTION (SAFE): No instructions attempting to override agent constraints or bypass safety filters were detected in the skill markdown or metadata.
Audit Metadata