skills/jkitchin/skillz/presentations/Gen Agent Trust Hub

presentations

Pass

Audited by Gen Agent Trust Hub on Jul 2, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill utilizes the Bash tool to run various compilation commands such as latexmk, npx, and jupyter nbconvert. It also provides prerequisite installation commands for system packages that may require administrative privileges via sudo.
  • [EXTERNAL_DOWNLOADS]: The skill facilitates the installation of necessary dependencies from well-known and trusted services, including NPM (@marp-team/marp-cli), PyPI (python-pptx, Pygments, notebook, nbconvert), and official system repositories (APT, Homebrew).
  • [PROMPT_INJECTION]: The document conversion feature utilizes the Read tool to ingest external files, which creates an indirect prompt injection surface where instructions embedded in source documents could potentially influence the agent's summarization or outlining behavior.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 2, 2026, 02:12 PM
Security Audit — agent-trust-hub — presentations