evm-audit-master

Pass

Audited by Gen Agent Trust Hub on Jun 19, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a high-level organizational tool for smart contract security audits. It does not contain executable code, obfuscation, or malicious instructions.
  • [COMMAND_EXECUTION]: The audit methodology includes a step to report findings using the GitHub CLI (gh issue create), which is an expected and legitimate use for a developer-oriented audit tool.
  • [EXTERNAL_DOWNLOADS]: The skill references various external security research sources (e.g., Sigma Prime, RareSkills, Dacian) that were used to compile the audit checklists. These are well-known and trusted entities in the blockchain security space.
  • [INDIRECT_PROMPT_INJECTION]: The skill's primary function is to analyze untrusted smart contract code. While this activity inherently involves an attack surface for indirect prompt injection (e.g., via malicious comments in contracts), the skill's structured multi-phase methodology and synthesis process are designed to mitigate such risks in a professional audit context.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 19, 2026, 11:55 AM
Security Audit — agent-trust-hub — evm-audit-master