contract-review
Pass
Audited by Gen Agent Trust Hub on Apr 7, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill contains purely instructional content for legal contract analysis. It does not include any executable code, scripts, or commands.
- [PROMPT_INJECTION]: No instructions were found that attempt to bypass AI safety filters, ignore prior instructions, or extract system prompts.
- [DATA_EXFILTRATION]: There are no patterns suggesting the unauthorized access or external transmission of sensitive information. The mention of checking for a 'local playbook' is a standard instructional pattern for utilizing user-provided configuration.
- [REMOTE_CODE_EXECUTION]: The skill does not perform any network operations, package installations, or remote script executions.
- [INDIRECT_PROMPT_INJECTION]: While the skill processes external contract data, it lacks capabilities (such as filesystem writes or network operations) that would allow an attacker to exploit the agent's output. The risk is negligible as it functions as a text-to-text assistant.
Audit Metadata