officecli-pitch-deck
PassAudited by VirusTotal on May 10, 2026.
Findings (1)
The SKILL.md file contains instructions for the AI agent to perform a 'curl | bash' operation to install or upgrade a dependency (officecli) from a remote GitHub URL (raw.githubusercontent.com/iOfficeAI/OfficeCli/main/install.sh). While this behavior is plausibly intended for setup, executing unverified remote scripts is a high-risk pattern that could be leveraged for arbitrary code execution or supply chain attacks. No other malicious indicators like data exfiltration or obfuscation were found.
