phoenix-contract-architect

Pass

Audited by Gen Agent Trust Hub on Sep 19, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists entirely of natural language instructions and output templates for designing secure system architectures. It does not include any script files, command execution, or network-enabled tools.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to process requirements generated by earlier roles in the pipeline (Active Set, Normative Requirements, Security Requirements). While this represents a data ingestion surface, the skill lacks high-risk capabilities such as network exfiltration or arbitrary code execution, effectively mitigating the impact of potential indirect injections.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 19, 2026, 10:33 AM
Security Audit — agent-trust-hub — phoenix-contract-architect