doc
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The
scripts/render_docx.pyscript executes system commands viasubprocess.runto interact withsoffice(LibreOffice) andpdftoppm. The implementation follows safety best practices by passing arguments as a list and not enabling shell execution (shell=True), which prevents typical command injection vulnerabilities. - [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and process content from external
.docxfiles. This creates a surface for indirect prompt injection where maliciously crafted documents could contain instructions intended to override the agent's behavior. The workflow identifies this risk by suggesting visual review and calling out layout/text extraction risks. - [EXTERNAL_DOWNLOADS]: The skill instructions specify the installation of standard third-party libraries (
python-docx,pdf2image) and system utilities (libreoffice,poppler-utils) from official repositories. These are standard dependencies required for the skill's stated purpose of document rendering and manipulation.
Audit Metadata