upgrade-stylus-contracts

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references the official OpenZeppelin repository for Rust contracts on GitHub for implementation examples.
  • [COMMAND_EXECUTION]: The instructions guide the agent to use the cargo-stylus CLI tool for contract deployment and testing.
  • [INDIRECT_PROMPT_INJECTION]: The skill surface includes the analysis of user-provided smart contract source code. 1. Ingestion points: User-supplied Stylus Rust contract source files. 2. Boundary markers: Absent; the skill does not define delimiters to isolate code from embedded instructions. 3. Capability inventory: The skill assists with contract deployment and testing using system-level tools. 4. Sanitization: Absent; no validation of user-provided code strings or comments is described to prevent following instructions embedded in code comments.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 03:27 AM
Security Audit — agent-trust-hub — upgrade-stylus-contracts