Flagged by auditors
Independent security partners scan this skill's files for malicious content, prompt injection and risky patterns. Verdicts below come from the skills.sh audit program; each partner links to its full report.
Gen Agent Trust Hub
failThis skill provides comprehensive PDF manipulation capabilities. While the scripts are technically sound and serve a legitimate utility purpose, the skill is classified as HIGH risk because it ingests untrusted external data (PDFs) and grants the agent capabilities to modify files and execute commands. This combination creates a significant surface for Indirect Prompt Injection, where instructions embedded in a PDF could subvert the agent's behavior.
Socket
passNo alerts
Snyk
passRisk: LOW · No issues
Runlayer
warn7/11 files flagged
ZeroLeaks
passScore: 93/100 · 2 sections analyzed