read-pdf
Pass
Audited by Gen Agent Trust Hub on Apr 9, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns or security vulnerabilities were detected in the skill. Its operations are limited to legitimate PDF data extraction tasks using well-known libraries.- [EXTERNAL_DOWNLOADS]: The skill provides instructions to download the uv installer from astral.sh, which is the official domain for the tool's developer (Astral). This is considered a safe and well-known source.- [REMOTE_CODE_EXECUTION]: Executes the official uv installation script via shell. This is a standard environment setup procedure and originates from a trusted technology provider.- [COMMAND_EXECUTION]: Uses uvx to run the pdfplumber package for processing PDF files provided as arguments. This behavior is consistent with the skill's primary purpose.
Audit Metadata