notice-general

Pass

Audited by Gen Agent Trust Hub on Feb 21, 2026

Risk Level: SAFE
Full Analysis
  • [Prompt Injection] (SAFE): The instructions follow standard operational procedures for an AI agent and do not contain any commands to bypass safety filters or ignore previous instructions.
  • [Data Exposure & Exfiltration] (SAFE): No sensitive file paths, hardcoded credentials, or network transmission functions (like curl or fetch) were detected.
  • [Remote Code Execution / External Downloads] (SAFE): The skill does not reference or download any external packages or scripts. It relies solely on the provided markdown text.
  • [Indirect Prompt Injection] (LOW): The skill is designed to process untrusted user-provided content (contracts). While it lacks explicit boundary markers for this data, the skill has no 'dangerous' capabilities—such as file writing, shell execution, or network access—that could be leveraged if an injection occurred within a contract document.
  • [Obfuscation] (SAFE): All content is in plain-text markdown. No Base64, hex encoding, or hidden Unicode characters were found.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 21, 2026, 11:45 AM
Security Audit — agent-trust-hub — notice-general