flexible-contract
Pass
Audited by Gen Agent Trust Hub on Jun 19, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The skill uses a shell command to execute a local Python script (
docx-generator.py) located within its own directory structure. This script is used to convert the generated text contract into a Word document format. - [DATA_EXPOSURE]: The skill ingests user-provided text when reviewing existing contracts. This data ingestion creates an indirect prompt injection surface; however, the skill incorporates legal validation rules and structured templates to mitigate unintended behavior.
Audit Metadata