Back to skill

Security audit

hap-mongodb-slowlog-analysis

Security checks across malware telemetry and agentic risk

Overview

This is a coherent MongoDB slow-log analysis helper with no executable code or hidden data-transfer behavior found, though users should treat logs and generated index commands carefully.

Before installing, remember that MongoDB slow logs can expose business data and operational details, so redact sensitive values when appropriate. Review any generated createIndex commands manually and test them in staging or with explain output before running them on production databases.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
92% confidence
Finding
The skill enables implicit invocation without defining any activation constraints or trigger phrases, which can cause the agent to invoke this capability in contexts the user did not clearly intend. Because the skill is designed to analyze pasted or uploaded logs and prefers direct AI analysis, accidental activation could expose sensitive operational data or lead the model to act on unrelated content as if it were MongoDB slow logs.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.