房产预测系统

Security checks across malware telemetry and agentic risk

Overview

This is a disclosed real-estate market analysis skill that uses current web data and does not install code, persist data, or request sensitive access.

Install this if you want real-estate market forecasting help based on public web data. Before relying on its advice, give a clear city, timeframe, and decision context, verify important numbers from primary sources, and treat buy/sell recommendations as informational rather than professional financial or legal advice.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
89% confidence
Finding
The trigger condition is broad enough to activate for almost any real-estate-related question, without clear limits on geography, recency, user intent, or when the skill should defer to a narrower workflow. Overbroad invocation can cause the agent to inappropriately collect external data, apply speculative forecasting, and present financial guidance in situations where the user asked for general information only.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal