Back to skill

Security audit

ISO17025实验室能力合规护栏

Security checks across malware telemetry and agentic risk

Overview

This skill is a non-executable ISO/IEC 17025 checklist that helps review lab documents and does not add hidden access or background behavior.

Installers should treat this as a compliance-assistance checklist, not a substitute for an accredited quality manager or legal/regulatory review. It may process sensitive lab or customer records only when the user provides them for review, so users should avoid sharing documents they do not want the agent to inspect.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.