mythril
Pass
Audited by Gen Agent Trust Hub on Sep 5, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The skill provides documentation and usage guidelines for Mythril, a widely recognized security analysis tool for Solidity smart contracts.
- [EXTERNAL_DOWNLOADS]: Mentions standard installation methods via
pip3 install mythrilanddocker pull mythril/myth. These target the official and well-knownmythrilpackage and Docker image. - [COMMAND_EXECUTION]: The skill describes typical command-line usage for the
mythtool, such asmyth analyze Contract.sol. These are standard operational commands for contract auditing. - [INDIRECT_PROMPT_INJECTION]: The tool processes external Solidity files, which is a potential injection surface. 1. Ingestion points: Solidity source files (SKILL.md). 2. Boundary markers: Absent in the provided commands. 3. Capability inventory: Command-line analysis (
myth analyze). 4. Sanitization: None identified within the documentation.
Audit Metadata