test-framework
Fail
Audited by Gen Agent Trust Hub on Mar 5, 2026
Risk Level: HIGHCOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: Unauthorized file system access detected in
ex.test.ts. Within thewriteFileSynctest suite, the 'writes JSON string' case contains a call towriteFileSync('../../CLAUDE.md', 'hello'). This operation uses path traversal to attempt to write to a file outside the designated temporary directory, specifically targeting an agent instruction file to potentially modify behavior or persist malicious instructions.
Recommendations
- AI detected serious security threats
Audit Metadata