Security audit
ISO17025实验室能力合规护栏
Security checks across malware telemetry and agentic risk
Overview
This skill is a non-executable ISO/IEC 17025 checklist that helps review lab documents and does not add hidden access or background behavior.
Installers should treat this as a compliance-assistance checklist, not a substitute for an accredited quality manager or legal/regulatory review. It may process sensitive lab or customer records only when the user provides them for review, so users should avoid sharing documents they do not want the agent to inspect.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
