contract-drafting-and-review-guidance-china-law

Pass

Audited by Gen Agent Trust Hub on Jun 22, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is entirely instructional, consisting of Markdown files that guide the AI's behavior for legal analysis. No scripts, binaries, or automated subprocesses are included.
  • [EXTERNAL_DOWNLOADS]: The documentation includes installation instructions via a platform-specific CLI and references the author's own GitHub repository for citation links. These references are standard for skill distribution and do not involve unsolicited background downloads during operation.
  • [DATA_EXFILTRATION]: No hardcoded credentials, sensitive file path access, or unauthorized network operations were detected. The skill operates purely within the context of the user's provided contract text.
  • [INDIRECT_PROMPT_INJECTION]: The skill analyzes user-provided contract data, which is a potential surface for indirect prompt injection. However, the skill lacks high-risk capabilities (such as shell access or external API calls) that could be abused if an injection were successful.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 22, 2026, 05:03 AM
Security Audit — agent-trust-hub — contract-drafting-and-review-guidance-china-law