skills/openhands/extensions/pdflatex/Gen Agent Trust Hub

pdflatex

Pass

Audited by Gen Agent Trust Hub on Sep 27, 2026

Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides instructions for the agent to install system-level packages using apt-get install and to execute the pdflatex compiler to process documents.
  • [INDIRECT_PROMPT_INJECTION]:
  • Ingestion points: The skill facilitates the processing of .tex (LaTeX) files which are external data inputs (found in SKILL.md and README.md).
  • Boundary markers: No boundary markers or instructions to disregard embedded commands in the source files are provided.
  • Capability inventory: The skill uses pdflatex, which is a powerful processing engine that can access the file system and, in some configurations, execute shell commands (e.g., via \write18).
  • Sanitization: No sanitization or validation of the input LaTeX source is described in the skill instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 27, 2026, 03:36 PM
Security Audit — agent-trust-hub — pdflatex