baidu-wenku-aippt
Pass
Audited by Gen Agent Trust Hub on May 12, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill and its associated resources are provided by the official vendor and utilize trusted Baidu infrastructure (baidupcs.com and baidu.com) for all remote operations.
- [REMOTE_CODE_EXECUTION]: The skill performs remote downloads of installers and updates from official domains, employing SHA256 checksums to verify file integrity prior to execution or extraction.
- [COMMAND_EXECUTION]: Lifecycle management of the CLI tool is handled through provided shell scripts, and PPT generation is performed via the verified 'bdpan' binary.
- [CREDENTIALS_UNSAFE]: The skill implements protective measures for authentication, using an Out-of-Band flow to prevent token leakage and explicitly forbidding the agent from accessing or outputting local configuration files containing credentials.
- [PROMPT_INJECTION]: No malicious instruction patterns were identified, and the skill includes defined triggers and safety constraints to limit its scope to intended PPT-related tasks.
Audit Metadata