risk-analysis

Pass

Audited by Gen Agent Trust Hub on Aug 22, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill uses local file-reading tools (Read, Glob, Grep) to perform its primary function of contract analysis. No network exfiltration or dangerous command execution patterns were identified.- [PROMPT_INJECTION]: The skill processes untrusted text from user-provided contracts, which is a surface for indirect prompt injection. 1. Ingestion points: SKILL.md defines reading file paths or pasted text using standard tools. 2. Boundary markers: None defined in the instructions. 3. Capability inventory: Read, Glob, and Grep tools are used for data retrieval only. 4. Sanitization: None specified. The risk is negligible as the agent's output is an informational markdown report and the tool scope is restricted to reading.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 22, 2026, 04:57 PM
Security Audit — agent-trust-hub — risk-analysis