markdown-to-pdf

Pass

Audited by Gen Agent Trust Hub on Oct 7, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill processes external Markdown files which represent an attack surface where malicious instructions could be embedded to influence the agent's behavior during the conversion workflow.
  • Ingestion points: scripts/convert.py reads the content of Markdown files provided as input arguments.
  • Boundary markers: The skill does not implement specific delimiters or 'ignore' instructions when processing the content of these files.
  • Capability inventory: The skill has the ability to read local files, create directories, and write PDF files to the disk. It does not have network access or the ability to execute arbitrary shell commands.
  • Sanitization: Content is processed using the standard markdown and weasyprint libraries, which convert the text to HTML and then to PDF.
Audit Metadata
Risk Level
SAFE
Analyzed
Oct 7, 2026, 04:40 AM