xlsx
Warn
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: MEDIUMDYNAMIC_EXECUTIONCOMMAND_EXECUTION
Full Analysis
- [DYNAMIC_EXECUTION]: The script scripts/office/soffice.py contains logic to write a C source string to a temporary file and compile it using gcc into a shared library. This library is then injected into the soffice process using the LD_PRELOAD environment variable to intercept system calls (socket, listen, accept). While this is intended to bypass environment restrictions on sockets for formula recalculation, runtime compilation and process injection are high-risk techniques.
- [COMMAND_EXECUTION]: Multiple scripts within the skill utilize the subprocess module to execute external system binaries. This includes invoking gcc for shim compilation in scripts/office/soffice.py, running the soffice binary and system timeout tools in scripts/recalc.py, and executing git diff for document validation in scripts/office/validators/redlining.py.
Audit Metadata