latex-formatting
Audited by Socket on Feb 22, 2026
1 alert found:
Security[Skill Scanner] Backtick command substitution detected All findings: [HIGH] command_injection: Backtick command substitution detected (CI003) [AITech 9.1.4] [HIGH] command_injection: Backtick command substitution detected (CI003) [AITech 9.1.4] BENIGN. The skill’s stated purpose (LaTeX formatting setup, issue fixing, and pre-submission checks) is coherent with its inputs/outputs and workflow. It relies on local scripts and project files, without external dependencies or credential handling. Data flows are contained within the project scope and do not imply exfiltration or unauthorized actions. LLM verification: The skill presents a coherent, purpose-aligned toolchain for LaTeX formatting and submission prep. No malicious behavior is evident; the only notable issue is documentation containing backtick-style command substitutions, which is a benign anomaly unless executed as code. Trust posture is moderate due to non-public script paths, but the footprint remains appropriate for a LaTeX workflow tool at the agent level.