risk-analysis
Pass
Audited by Gen Agent Trust Hub on Aug 22, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill uses local file-reading tools (Read, Glob, Grep) to perform its primary function of contract analysis. No network exfiltration or dangerous command execution patterns were identified.- [PROMPT_INJECTION]: The skill processes untrusted text from user-provided contracts, which is a surface for indirect prompt injection. 1. Ingestion points: SKILL.md defines reading file paths or pasted text using standard tools. 2. Boundary markers: None defined in the instructions. 3. Capability inventory: Read, Glob, and Grep tools are used for data retrieval only. 4. Sanitization: None specified. The risk is negligible as the agent's output is an informational markdown report and the tool scope is restricted to reading.
Audit Metadata