Intent-Code Divergence
Medium
- Confidence
- 96% confidence
- Finding
- The security notes state the skill performs only local file processing and does not expose extra risk, but the HTML→PDF path explicitly enables wkhtmltopdf local file access. With untrusted HTML, that can permit inclusion of arbitrary local files referenced by file:// URLs into the rendered output, so the documentation materially understates the capability and risk.
