flexible-contract

Pass

Audited by Gen Agent Trust Hub on Jun 19, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses a shell command to execute a local Python script (docx-generator.py) located within its own directory structure. This script is used to convert the generated text contract into a Word document format.
  • [DATA_EXPOSURE]: The skill ingests user-provided text when reviewing existing contracts. This data ingestion creates an indirect prompt injection surface; however, the skill incorporates legal validation rules and structured templates to mitigate unintended behavior.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 19, 2026, 09:18 AM
Security Audit — agent-trust-hub — flexible-contract