Back to skill

Security audit

Skreenshot

Security checks across malware telemetry and agentic risk

Overview

This screenshot-management skill is coherent, but it includes bulk file moves, persistent macOS setting changes, OCR indexing, and deletion-style automation without enough built-in confirmation guidance.

Install only if you want an agent to manage local screenshots. Before allowing it to run mutating commands, ask for a preview of matched files, use dry-run where available, confirm exact source and destination folders, avoid cloud upload for sensitive screenshots, and document how to undo any macOS screenshot-location or automation changes.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (5)

Vague Triggers

Medium
Confidence
83% confidence
Finding
The skill description is broad enough to trigger on many screenshot-related requests, including actions that modify large numbers of user files. Without tighter boundaries or explicit confirmation requirements, an agent could select this skill in situations where the user only intended to search or inspect screenshots, increasing the chance of unintended file moves, renames, or cleanup actions.

Missing User Warnings

Medium
Confidence
92% confidence
Finding
These instructions perform bulk file movement on screenshot files from the Desktop without any warning that user data will be modified. In an agent context, bulk renaming or moving can disrupt user organization, break references, or relocate files the user did not intend to change, especially because shell globs may affect many files at once.

Missing User Warnings

Medium
Confidence
96% confidence
Finding
The skill recommends changing the macOS system screenshot save location using persistent defaults without warning that this alters future system behavior beyond the current task. In an agent setting, persistent configuration changes can confuse users, break established workflows, and be difficult to notice immediately because the effect appears later when screenshots are taken.

Missing User Warnings

Medium
Confidence
89% confidence
Finding
The automation descriptions mention archiving and cleanup scripts that likely perform bulk operations on many screenshot files, but they do not include safeguards or warnings. In practice, cleanup and archive actions can move or rename large file sets, causing data loss perception, workflow disruption, or accidental handling of the wrong files if the script scope is broader than intended.

Missing User Warnings

Medium
Confidence
93% confidence
Finding
The document recommends an automated rule to move screenshots older than one year to Trash without any warning, dry-run, exception review, or confirmation step. In a file-management automation context, this can lead to silent loss of important screenshots, especially if tagging or folder classification is incomplete or OCR/rule matching is imperfect.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.