baoyu-slide-deck
Warn
Audited by Socket on Feb 27, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The fragment describes a coherent, locally-driven slide-deck generation workflow with appropriate safeguards and clear data flows. The primary security concern is reliance on external runtimes and scripts (Bun and TS-based tooling) for merging outputs, which necessitates best-practice supply-chain controls: pin/verify tooling versions, validate integrity of external scripts, and restrict runtime to trusted environments. Overall, the design is sound but carries moderate supply-chain risk due to external tooling dependencies.
Confidence: 75%Severity: 75%
Audit Metadata