visa-doc-translate
Warn
Audited by Gen Agent Trust Hub on Jun 24, 2026
Risk Level: MEDIUMCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The skill instructs the agent to dynamically generate and execute a Python script using 'PIL' and 'reportlab' to generate PDF files. This execution occurs automatically without user confirmation.
- [COMMAND_EXECUTION]: Uses the macOS 'sips' utility to perform image conversion (HEIC to PNG) based on file extensions.
- [EXTERNAL_DOWNLOADS]: Instructs the user or agent to install multiple third-party libraries and system tools, including 'easyocr', 'pytesseract', 'pillow', 'reportlab', and 'pyobjc' frameworks.
- [PROMPT_INJECTION]: The skill contains an Indirect Prompt Injection surface. It extracts text from user-provided images via OCR and processes this content without sanitization or boundary markers. If an image contains malicious instructions, the agent might follow them during the translation or script generation phase.
- [DATA_EXPOSURE]: The skill's primary purpose is the processing of highly sensitive PII (Personally Identifiable Information), including bank certificates, income statements, ID cards, and passports. While no exfiltration pattern was detected, the handling of such data combined with dynamic execution increases the overall risk profile.
Audit Metadata