docx-reader

Pass

Audited by Gen Agent Trust Hub on Apr 1, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONCOMMAND_EXECUTION
Full Analysis
  • [REMOTE_CODE_EXECUTION]: The skill documents and prompts for the installation of the 'uv' tool using official piped shell and PowerShell scripts from astral.sh. These references are documented neutrally as they originate from a well-known technology provider.- [EXTERNAL_DOWNLOADS]: Python dependencies are configured to be downloaded from the Aliyun PyPI mirror (mirrors.aliyun.com) to ensure availability and performance.- [COMMAND_EXECUTION]: The skill executes document conversion by invoking a Python script through the 'uv run' command, which manages the local environment safely.- [SAFE]: The internal logic for processing .docx files is localized and does not exhibit malicious patterns such as data exfiltration or obfuscation.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 1, 2026, 08:41 AM
Security Audit — agent-trust-hub — docx-reader