slides-grab-export
Pass
Audited by Gen Agent Trust Hub on Oct 2, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTIONDYNAMIC_EXECUTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill operates on user-provided HTML files which represents a potential surface for indirect injection if malicious instructions are embedded in the source slides.
- Ingestion points: Processes HTML slide files (
slide-*.html) found in the user-specified<slides-dir>. - Boundary markers: Workflow requires a 'Stage 2 design gate' Proceed receipt, ensuring a validation step occurs before the export process begins.
- Capability inventory: Utilizes the
slides-grabCLI andplaywright(headless browser) for rendering content. - Sanitization: Explicitly incorporates
defusedxmlto mitigate risks associated with XML external entity (XXE) attacks during PPTX generation. - [DYNAMIC_EXECUTION]: The conversion engine dynamically renders HTML slides using browser automation to extract DOM elements for PowerPoint and PDF output.
- Evidence: The skill uses
playwrightto render slides andhtml2pptx.jsfor data extraction and conversion tasks. - [COMMAND_EXECUTION]: The skill invokes local command-line tools to perform file conversion and validation.
- Evidence: Executes commands such as
slides-grab png,slides-grab pdf,slides-grab validate, andslides-grab convertto manage the slide export lifecycle.
Audit Metadata