slides-grab-export

Pass

Audited by Gen Agent Trust Hub on Oct 2, 2026

Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTIONDYNAMIC_EXECUTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill operates on user-provided HTML files which represents a potential surface for indirect injection if malicious instructions are embedded in the source slides.
  • Ingestion points: Processes HTML slide files (slide-*.html) found in the user-specified <slides-dir>.
  • Boundary markers: Workflow requires a 'Stage 2 design gate' Proceed receipt, ensuring a validation step occurs before the export process begins.
  • Capability inventory: Utilizes the slides-grab CLI and playwright (headless browser) for rendering content.
  • Sanitization: Explicitly incorporates defusedxml to mitigate risks associated with XML external entity (XXE) attacks during PPTX generation.
  • [DYNAMIC_EXECUTION]: The conversion engine dynamically renders HTML slides using browser automation to extract DOM elements for PowerPoint and PDF output.
  • Evidence: The skill uses playwright to render slides and html2pptx.js for data extraction and conversion tasks.
  • [COMMAND_EXECUTION]: The skill invokes local command-line tools to perform file conversion and validation.
  • Evidence: Executes commands such as slides-grab png, slides-grab pdf, slides-grab validate, and slides-grab convert to manage the slide export lifecycle.
Audit Metadata
Risk Level
SAFE
Analyzed
Oct 2, 2026, 01:52 AM
Security Audit — agent-trust-hub — slides-grab-export