Back to skill

Security audit

Revenue Scout

Security checks for vulnerabilities and agentic risk

Overview

This skill is a simple, coherent revenue-opportunity scouting prompt with some privacy and autonomy caveats but no hidden code or destructive behavior.

Before installing, expect the agent to search external sites for opportunities and possibly keep a working list. Use it with clear instructions about which platforms to search, what context may be included in queries, and whether any publishing or outreach should require your approval.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Missing User Warnings

Medium
Confidence
94% confidence
Finding
The skill advertises scanning ClawHub, GitHub, X, and the web, but does not warn that using it may contact external services, transmit prompts or derived user data, and collect third-party content. In an agent setting, that omission can mislead users about privacy and operational boundaries, especially because the skill is designed for autonomous revenue discovery across multiple platforms.

Vague Triggers

Medium
Confidence
95% confidence
Finding
The activation guidance, "Use when looking to generate earnings without constant human input," is broad enough to trigger the skill in many unrelated contexts involving money-making or autonomy. Overly broad invocation can cause an agent to initiate external scanning or opportunity-seeking behavior without clear user intent, increasing the chance of unnecessary data transmission and unintended actions across third-party platforms.

Static analysis

No suspicious patterns detected.