syncfusion-javascript-pdf

Pass

Audited by Gen Agent Trust Hub on May 19, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The documentation references official Syncfusion CDN domains (cdn.syncfusion.com) for loading minified library scripts. These are standard vendor resources required for the library's integration in browser environments.
  • [REMOTE_CODE_EXECUTION]: Instructions are provided for installing official Syncfusion packages (@syncfusion/ej2-pdf, @syncfusion/ej2-pdf-data-extract, @syncfusion/ej2-file-utils) via npm. These packages constitute the core functionality of the skill and are sourced from the authorized vendor.
  • [SAFE]: No evidence of prompt injection, credential theft, or hidden malicious code was found. Base64 encoded strings in the examples were verified as legitimate image data URIs for PDF rendering demonstrations. While the skill's data extraction features represent a potential surface for processing untrusted content, the documentation follows best practices for document handling and resource disposal.
Audit Metadata
Risk Level
SAFE
Analyzed
May 19, 2026, 04:26 PM
Security Audit — agent-trust-hub — syncfusion-javascript-pdf