office-docx

Pass

Audited by Gen Agent Trust Hub on May 6, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [SAFE]: No malicious behavior or significant security vulnerabilities were detected in the skill's instructions or code.
  • [COMMAND_EXECUTION]: Local shell commands are used for document conversion (LibreOffice) and revision comparison (Git). These operations are triggered as part of the skill's validation workflow and use sanitized local paths.
  • [SAFE]: The skill uses the defusedxml library to securely parse XML data from external documents, providing protection against XML External Entity (XXE) and other XML parsing vulnerabilities.
Audit Metadata
Risk Level
SAFE
Analyzed
May 6, 2026, 09:36 PM