Back to skill

Security audit

MoSoCanvas

Security checks for vulnerabilities and agentic risk

Overview

This skill is a coherent visual-direction workflow with local helper scripts and no evidence of hidden persistence, credential access, exfiltration, or destructive behavior.

Install this if you want a structured visual-art-direction and review workflow. Its local scripts can process images, create masks, hash files, build HTML review packets with local file references, and package releases, so run them only on project files you intend to include. Trend and benchmark workflows may involve collecting source URLs or current visual references, but the artifact does not include automatic network collection code.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.