Back to skill

Security audit

Config Rollback

Security checks across malware telemetry and agentic risk

Overview

This skill transparently teaches a system-administration rollback workflow, but users should verify the target file and scheduled command before using it on live services.

Install only if you administer the target system. Before running the workflow, confirm the exact config file, backup destination, service reload command, scheduled execution time, and at job ID; cancel the job promptly after verifying the change works.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
89% confidence
Finding
The activation phrases "auto rollback" / "自动回滚" are generic and not clearly bound to a narrow target, so an agent could invoke this skill in contexts beyond the author's intended config-edit workflow. Because the skill performs privileged file backup and schedules unattended restoration commands, over-broad triggering increases the chance of unintended execution against arbitrary services or sensitive configs.

VirusTotal

63/63 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.