{"data":{"skill":{"slug":"k-dense-ai-docx","name":"docx","icon":"📦","repo":"https://github.com/K-Dense-AI/claude-scientific-skills/tree/main/scientific-skills/document-skills/docx","status":"approved","author":"K-Dense-AI","authorVersion":null,"skillstoreRevision":null},"audit":{"id":"be949750-f70c-49e1-b024-c1c239a63e86","skill_id":"33ee9b5e-bd7b-44c8-a6b1-797e97424628","version":1,"content_hash":null,"risk_level":"low","is_blocked":false,"safe_to_publish":true,"analysis_status":"ok","agent_auto_install_policy":null,"manual_install_policy":null,"summary":"This is a legitimate document processing skill with controlled filesystem access and secure XML parsing. Uses defusedxml library to prevent XXE attacks. External commands (soffice, git) are called with hardcoded paths and controlled arguments. Operations are confined to user-specified files within designated workspaces.","remediation":[],"risk_factor_evidence":[{"factor":"filesystem","evidence":[{"file":"scripts/document.py","line_end":642,"line_start":634},{"file":"scripts/utilities.py","line_end":74,"line_start":55},{"file":"ooxml/scripts/unpack.py","line_end":17,"line_start":14},{"file":"ooxml/scripts/pack.py","line_end":79,"line_start":64}]},{"factor":"external_commands","evidence":[{"file":"ooxml/scripts/pack.py","line_end":116,"line_start":103},{"file":"ooxml/scripts/validation/redlining.py","line_end":163,"line_start":153}]},{"factor":"scripts","evidence":[{"file":"ooxml/scripts/pack.py","line_end":160,"line_start":1},{"file":"ooxml/scripts/unpack.py","line_end":29,"line_start":1}]}],"critical_findings":[],"high_findings":[],"medium_findings":[{"title":"External command execution for validation","locations":[{"file":"ooxml/scripts/pack.py","line_end":116,"line_start":103},{"file":"ooxml/scripts/validation/redlining.py","line_end":163,"line_start":153}],"description":"The skill executes external commands (soffice and git) via subprocess.run for document validation and diff comparison. While arguments are controlled, external command execution inherently carries risk. An attacker with control over document content could potentially craft input that causes unexpected behavior.\n\nCode: pack.py lines 103-116 uses subprocess.run(['soffice', '--headless', '--convert-to', ...]) for validation"}],"low_findings":[],"dangerous_patterns":[],"files_scanned":23,"total_lines":5590,"audit_model":"claude","audited_at":"2026-01-04T17:14:25.949+00:00","created_at":"2026-01-05T03:08:47.133614+00:00","static_findings":[],"finding_verdicts":[],"semantic_findings":[],"subject_marketplace_commit_sha":null,"subject_content_hash":null,"subject_tree_hash":null,"subject_plugin_path":null,"audit_payload_hash":null,"confirmed_risk_level":null,"scanner_version":null,"policy_version":null,"subject":{"marketplaceCommitSha":null,"contentHash":null,"treeHash":null,"pluginPath":null,"auditPayloadHash":null},"scannerVersion":null,"policyVersion":null},"auditTranslation":null,"localization":{"requestedLocale":"en","contentLocale":"en","availableLocales":["en"],"fallbackToEnglish":false},"attestation":{"availability":"not_attestable","url":null,"status":null,"reason":"canonical install advisories are incomplete"},"trust":{"publicState":"public","auditState":"complete","auditCurrentness":null,"confirmedRiskLevel":"safe","confirmedFindingCount":0,"capabilityReviewCount":1,"needsReviewCount":0,"falsePositiveCount":0,"agentAutoInstallPolicy":null,"manualInstallPolicy":null,"artifactSignatureState":"available","attestationState":"not_attestable","verificationState":"not_verified"},"isLatest":false}}