Back to skill

Security audit

PPTMagic Official PPT Creator

Security checks for vulnerabilities and agentic risk

Overview

This is a disclosed presentation-generation skill that sends deck content to a fixed external PPTMagic service, with no hidden installer or local persistence.

Install only if you are comfortable sending presentation prompts, outlines, slide descriptions, and template images to the PPTMagic endpoint. Avoid confidential, regulated, or sensitive material unless you trust the service operator and its data handling, and treat any access code like a credential.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.