pitch-deck-builder

Pass

Audited by Gen Agent Trust Hub on Jul 16, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides a local Python utility script scripts/check-output.py designed to verify that generated presentation outlines contain the required structural components.
  • [PROMPT_INJECTION]: The skill ingests user-supplied text for personas and metrics which are interpolated into the generated output. This capability constitutes an indirect prompt injection surface, though the risk is localized to the generated document's content.
  • [SAFE]: Comprehensive analysis of the provided scripts, templates, and instructions indicates the skill operates strictly within its functional scope. No network operations, credential harvesting, or persistent mechanisms were detected.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 16, 2026, 03:21 PM
Security Audit — agent-trust-hub — pitch-deck-builder