presentation-generator
Pass
Audited by Gen Agent Trust Hub on Sep 25, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The
scripts/generate-presentation.jsscript processes external JSON data to generate HTML slides but lacks consistent input sanitization. 1. Ingestion points: The presentation content provided via the--inputargument inscripts/generate-presentation.js. 2. Boundary markers: No delimiters or safety instructions are present to distinguish slide content from the HTML template structure. 3. Capability inventory: The skill performs file writes viafs.writeFileSyncand uses Playwright for browser automation inscripts/export-slides.js. 4. Sanitization: While anescapeHtmlfunction is defined, it is only applied to specific fields like code blocks and terminal lines. Main text fields includingtitle,subtitle,body, andbulletsare directly interpolated into the template as raw HTML, making the generated output susceptible to XSS. - [COMMAND_EXECUTION]: The
scripts/export-slides.jsscript uses Playwright to automate a Chromium instance. The browser navigates to local files using thefile://protocol, which represents a potential risk if the generated HTML content is malicious and targets the local filesystem.
Audit Metadata