legal-hold

Pass

Audited by Gen Agent Trust Hub on Sep 14, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [Indirect Prompt Injection Surface]: The skill reads from local files such as matter.md and _log.yaml to generate legal hold notices and portfolio reports. If these files contain data sourced from external parties (e.g., matter descriptions or custodian notes), there is a potential for that data to contain hidden instructions that could influence the agent's behavior.
  • [Specific Local File Access]: The skill is configured to interact with a specific directory hierarchy (~/.claude/plugins/config/claude-for-legal/) to store and retrieve legal documentation. While this is necessary for the skill's function, it involves the management of sensitive organizational information, and users should ensure appropriate file-level permissions are maintained.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 14, 2026, 07:00 PM
Security Audit — agent-trust-hub — legal-hold