deck-open-slide-canvas

Pass

Audited by Gen Agent Trust Hub on May 15, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references Tailwind CSS and Google Fonts from well-known content delivery networks. These are established services used to provide styling and typography for the generated presentation decks.\n- [PROMPT_INJECTION]: The skill processes user-provided content to populate its layout templates, creating a surface for indirect prompt injection. This is assessed as safe given the tool's limited capabilities and lack of access to sensitive data.\n
  • Ingestion points: User-provided text and data for slides (referenced in SKILL.md).\n
  • Boundary markers: Not present in the skill instructions.\n
  • Capability inventory: Generates static HTML and CSS files for visual display.\n
  • Sanitization: Not explicitly required by the skill instructions.\n- [SAFE]: No evidence of malicious behavior, such as command injection, data exfiltration, or obfuscation, was found within the skill's scripts or instructions. All external references are for styling or documentation purposes.
Audit Metadata
Risk Level
SAFE
Analyzed
May 15, 2026, 01:02 PM
Security Audit — agent-trust-hub — deck-open-slide-canvas