table-extractor
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- Indirect Prompt Injection (LOW): The skill processes untrusted external content from PDF and image files which can contain hidden instructions targeting the LLM. Ingestion points:
load_pdfandload_imagemethods in SKILL.md. Boundary markers: No delimiters or ignore instructions are specified for extracted text. Capability inventory: File system read and write operations viato_csvandto_excel. Sanitization: No sanitization of extracted document text is performed. - External Downloads (SAFE): The skill depends on standard packages from the official PyPI registry.
Audit Metadata