Post-Development Verification

PassAudited by VirusTotal on Apr 3, 2026.

Findings (1)

The skill bundle defines a highly autonomous 'Post-Development Verification' agent that performs environment analysis, test generation, and an automated 'fix loop' involving code modification and service execution. While the instructions in SKILL.md are strictly aligned with software quality assurance and include safety guidelines for sandboxing, the skill requires broad, high-risk capabilities including read_project_files, run_tests, start_stop_services, and network_access. Its reliance on executing auto-detected project commands and performing multi-round code fixes constitutes a significant risk profile typical of autonomous agents with shell access, even though no malicious intent or data exfiltration was detected.