nano-pdf
Pass
Audited by Gen Agent Trust Hub on Aug 19, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill installs the 'nano-pdf' utility from PyPI, an established and well-known software registry.- [COMMAND_EXECUTION]: The skill invokes the nano-pdf CLI to perform modifications on PDF files, which is consistent with its stated purpose.- [PROMPT_INJECTION]: The skill processes external PDF files, which represents a potential surface for indirect prompt injection. * Ingestion points: PDF documents (e.g., deck.pdf) processed by the CLI. * Boundary markers: Absent. * Capability inventory: Command-line execution for file editing. * Sanitization: None explicitly specified in the instructions.
Audit Metadata