pptx

Pass

Audited by Gen Agent Trust Hub on Jun 30, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill is a legitimate developer tool for presentation management. All identified runtime behaviors, including the use of headless browsers for HTML rendering and subprocess calls for file conversion (soffice, pdftoppm, git), are necessary for its core functionality and utilize safe implementation patterns.
  • [PROMPT_INJECTION]: The skill has a surface for indirect prompt injection as it processes untrusted PowerPoint and HTML data. 1. Ingestion points: Text extraction in inventory.py and SKILL.md workflows. 2. Boundary markers: Absent. 3. Capability inventory: Shell command execution (via soffice, pdftoppm, and git) and file system write operations. 4. Sanitization: Absent. This surface is inherent to the skill's primary purpose of presentation processing.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 30, 2026, 11:33 AM
Security Audit — agent-trust-hub — pptx