test-framework

Fail

Audited by Gen Agent Trust Hub on Mar 5, 2026

Risk Level: HIGHCOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: Unauthorized file system access detected in ex.test.ts. Within the writeFileSync test suite, the 'writes JSON string' case contains a call to writeFileSync('../../CLAUDE.md', 'hello'). This operation uses path traversal to attempt to write to a file outside the designated temporary directory, specifically targeting an agent instruction file to potentially modify behavior or persist malicious instructions.
Recommendations
  • AI detected serious security threats
Audit Metadata
Risk Level
HIGH
Analyzed
Mar 5, 2026, 07:06 PM