ooxml
Pass
Audited by Gen Agent Trust Hub on Jun 17, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [SAFE]: The skill documentation encourages and demonstrates the use of the
defusedxmllibrary for parsing XML files. This is a security best practice that protects against XML External Entity (XXE) attacks, which are a major risk when processing document files from untrusted sources. - [COMMAND_EXECUTION]: The skill includes shell command examples for environment setup, such as using
findto locate project scripts and setting thePYTHONPATH. These instructions are limited to local environment configuration and do not represent a security risk. - [SAFE]: All filesystem operations described, such as copying images or saving XML files, are restricted to the local workspace and the document being edited. No patterns for unauthorized data access or network transmission were identified.
Audit Metadata