syncfusion-maui-pdf-viewer
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill provides instructions for implementing a PDF viewer that ingests untrusted external files, which creates a standard surface for indirect prompt injection attacks.
- Ingestion points: External PDF documents are loaded via the
DocumentSourceproperty andLoadDocumentmethods as shown inreferences/basic-sample.mdandreferences/document-operations.md. - Boundary markers: The skill does not provide specific delimiters or instructions to the agent to ignore potentially malicious embedded content within the PDF files it processes.
- Capability inventory: The code snippets provided grant the application capabilities to write to the local file system (
SaveDocumentinreferences/document-operations.md), print documents (PrintDocumentinreferences/document-operations.md), and open external URLs in the system browser usingLauncher.Default.OpenAsync(references/viewing.md). - Sanitization: No explicit sanitization or content validation logic is included in the reference materials for the data contained within the loaded PDF documents.
Audit Metadata