docx-reader
Pass
Audited by Gen Agent Trust Hub on Apr 1, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONCOMMAND_EXECUTION
Full Analysis
- [REMOTE_CODE_EXECUTION]: The skill documents and prompts for the installation of the 'uv' tool using official piped shell and PowerShell scripts from astral.sh. These references are documented neutrally as they originate from a well-known technology provider.- [EXTERNAL_DOWNLOADS]: Python dependencies are configured to be downloaded from the Aliyun PyPI mirror (mirrors.aliyun.com) to ensure availability and performance.- [COMMAND_EXECUTION]: The skill executes document conversion by invoking a Python script through the 'uv run' command, which manages the local environment safely.- [SAFE]: The internal logic for processing .docx files is localized and does not exhibit malicious patterns such as data exfiltration or obfuscation.
Audit Metadata