Flagged by auditors
Independent security partners scan this skill's files for malicious content, prompt injection and risky patterns. Verdicts below come from the skills.sh audit program; each partner links to its full report.
Gen Agent Trust Hub
failThe skill provides a powerful automated pipeline for generating professional presentations but introduces significant security risks. It requires the installation of external global packages and utilizes dynamic Python script generation and execution at runtime. Most importantly, the documentation explicitly instructs the agent to use elevated privileges (sudo) if installation issues occur, which is a high-risk pattern. Additionally, it lacks input sanitization for user-provided data and topics, creating a surface for indirect prompt injection.
Socket
passNo alerts
Snyk
passRisk: LOW · No issues
Runlayer
warn13/13 files flagged
ZeroLeaks
passScore: 93/100 · 2 sections analyzed