xlsx
Pass
Audited by Gen Agent Trust Hub on Aug 16, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill installs the
openpyxllibrary viapip. This is a standard library for Excel processing. - [COMMAND_EXECUTION]: Spreadsheet tasks are performed by running Python commands via the shell, which is the intended functionality of the skill.
- [PROMPT_INJECTION]: The skill features a surface for indirect prompt injection. Ingestion point:
os.fs.read_documentinSKILL.md. Boundary markers: Absent. Capability inventory:os.shell.runinSKILL.md. Sanitization: Absent. The vulnerability is considered low risk and typical for file-processing skills.
Audit Metadata