← Registry
Trust Report

elegant-reports

Generate beautifully designed PDF reports with Nordic/Scandinavian aesthetic. Uses Nutrient DWS API for HTML-to-PDF conversion.

82
SUSPICIOUS
Format: openclawScanner: v0.1.0Duration: 2msScanned: 2026-02-07Source →
Embed this badge
AgentVerus SUSPICIOUS 82AgentVerus SUSPICIOUS 82AgentVerus SUSPICIOUS 82
[![AgentVerus](https://agentverus.ai/api/v1/skill/fb041ee8-5155-4e06-88bf-628c092866d7/badge)](https://agentverus.ai/skill/fb041ee8-5155-4e06-88bf-628c092866d7)

Category Scores

100
Permissions
75
Injection
90
Dependencies
55
Behavioral
80
Content

Findings (6)

highCredential access detected-25

Found credential access pattern: "API_KEY"

- Nutrient DWS API key (configured in mcporter or NUTRIENT_DWS_API_KEY env var)

Remove references to credentials and secrets. Skills should never access sensitive authentication data.

injectionASST-05
highSystem modification detected-20

Found system modification pattern: "npm install"

- axios, form-data (`npm install`)

Skills should not modify system configuration or install packages. Bundle required dependencies.

behavioralASST-03
highPotential data exfiltration: skill accesses credentials and has network capability-25

The skill references both credential/secret access patterns and network endpoints, suggesting a possible data exfiltration flow.

Credential and network patterns both present in skill content

Separate credential access from network operations. If both are needed, declare them explicitly and justify.

behavioralASST-06
lowUnknown external reference-5

The skill references an unknown external domain which is classified as low risk.

https://www.canva.com/templates/

Verify that this external dependency is trustworthy and necessary.

dependenciesASST-04
lowUnknown external reference-5

The skill references an unknown external domain which is classified as low risk.

https://fonts.googleapis.com/css2?family=Poppins:wght@600

Verify that this external dependency is trustworthy and necessary.

dependenciesASST-04
lowNo explicit safety boundaries

The skill does not include explicit safety boundaries defining what it should NOT do.

No safety boundary patterns found

Add a 'Safety Boundaries' section listing what the skill must NOT do (e.g., no file deletion, no network access beyond needed APIs).

contentASST-09