Skill audit report

Malicious Pdf audit report.

馃拃 Generate malicious PDF test files for testing phone-home callbacks, SSRF, XSS, NTLM credential theft, and data exfiltration in PDF viewers, converters, and web applications. Can be used with Burp Collaborator or Interact.sh

REVIEWEDREVIEWSafe to tryGenerated Jun 16, 2026Heuristic metadata audit
96
Audit
93
Trust
100
Quality
94
Security
100
Maintain
92
Install

OpenAgentSkill Trust Score

93
Production candidate

Stars, maintenance, license, docs, dependency risk, and installability.

The Trust Score is OpenAgentSkill's adoption layer. It is designed to help an agent decide whether a skill is safe enough to shortlist before installation.

GitHub adoption

PASS

86

4.1K GitHub stars

Recent maintenance

PASS

100

11d since push

License clarity

PASS

86

BSD-2-Clause

README/SKILL.md completeness

PASS

90

Metadata includes enough usage and workflow context

Dependency risk

INFO

72

credential or environment access

Install availability

PASS

92

npx skills add jonaslejon/malicious-pdf

Repository evidence

PASS

86

https://github.com/jonaslejon/malicious-pdf

Review status

PASS

88

AI review data available

Checks

Install and adoption review

7 passed 路 1 review

Install path

92

PASS

npx skills add jonaslejon/malicious-pdf

Repository

88

PASS

https://github.com/jonaslejon/malicious-pdf

License

86

PASS

BSD-2-Clause

Maintenance

100

PASS

11d since push

AI review

88

PASS

Approved with no listed issues

README/SKILL.md completeness

90

PASS

Usable description available

Dependency risk

72

CHECK

credential or environment access

Adoption

88

PASS

4.1K GitHub stars

Warnings

No major warnings detected from available metadata.

Method

This report combines public metadata, AI review output, repository freshness, install readiness, OpenAgentSkill events, quality scoring, trust checks, and the agent safety gate. It is not a full source-code security review.

Compare nearby options

Related skills to audit next