office-docx
Pass
Audited by Gen Agent Trust Hub on May 6, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [SAFE]: No malicious behavior or significant security vulnerabilities were detected in the skill's instructions or code.
- [COMMAND_EXECUTION]: Local shell commands are used for document conversion (LibreOffice) and revision comparison (Git). These operations are triggered as part of the skill's validation workflow and use sanitized local paths.
- [SAFE]: The skill uses the
defusedxmllibrary to securely parse XML data from external documents, providing protection against XML External Entity (XXE) and other XML parsing vulnerabilities.
Audit Metadata