frontend-slides
Pass
Audited by Gen Agent Trust Hub on Jun 24, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill uses
npm install playwrightandpip install python-pptxto enable its core features. These dependencies are sourced from well-known, reputable providers. - [COMMAND_EXECUTION]: To provide a seamless user experience, the skill uses system commands such as
open(macOS),start(Windows), andxdg-open(Linux) to display the generated slides. It also usesnodeandpython3to run internal automation scripts. - [REMOTE_CODE_EXECUTION]: The PDF export process in
export-pdf.shinvolves downloading a headless Chromium browser using Playwright's official installation command. This is a legitimate requirement for rendering HTML slides into a static PDF document. - [PROMPT_INJECTION]: The skill ingests text content from PowerPoint files to convert them into HTML slides, creating an indirect prompt injection surface.
- Ingestion points: Text and notes extracted from
.pptxfiles viaextract-pptx.py. - Boundary markers: None observed in the prompt instructions.
- Capability inventory: Shell execution for opening files and automated browser control.
- Sanitization: The extracted text is not explicitly sanitized before being placed into the HTML template.
- Note: This represents a low-risk surface common to data conversion tools; no active exploitation was found.
Audit Metadata