frontend-slides

Pass

Audited by Gen Agent Trust Hub on Jun 24, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill uses npm install playwright and pip install python-pptx to enable its core features. These dependencies are sourced from well-known, reputable providers.
  • [COMMAND_EXECUTION]: To provide a seamless user experience, the skill uses system commands such as open (macOS), start (Windows), and xdg-open (Linux) to display the generated slides. It also uses node and python3 to run internal automation scripts.
  • [REMOTE_CODE_EXECUTION]: The PDF export process in export-pdf.sh involves downloading a headless Chromium browser using Playwright's official installation command. This is a legitimate requirement for rendering HTML slides into a static PDF document.
  • [PROMPT_INJECTION]: The skill ingests text content from PowerPoint files to convert them into HTML slides, creating an indirect prompt injection surface.
  • Ingestion points: Text and notes extracted from .pptx files via extract-pptx.py.
  • Boundary markers: None observed in the prompt instructions.
  • Capability inventory: Shell execution for opening files and automated browser control.
  • Sanitization: The extracted text is not explicitly sanitized before being placed into the HTML template.
  • Note: This represents a low-risk surface common to data conversion tools; no active exploitation was found.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 24, 2026, 08:28 AM