Back to skill

Security audit

Arabic Localization Reviewer Skill

Security checks for vulnerabilities and agentic risk

Overview

This is a narrowly scoped Arabic localization review checklist with no code or hidden execution behavior.

Install this if you want help reviewing Arabic or Arabic/English localization. Avoid providing secrets or confidential client data, and keep final publishing or account changes under your explicit control. The PayPal donation link is present as support text but is not part of any executable behavior.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Output HandlingUnvalidated Output Injection, Cross-Context Output, Unbounded Output
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (3)

Natural-Language Policy Violations

Medium
Category
Not specified by scanner
Confidence
91% confidence
Finding

The skill instructs use specifically for reviewing 'Arabic or bilingual Arabic/English content,' which imposes a language scope. Under the policy, forcing a specific language is a natural-language policy concern unless the skill clearly offers user choice or documents why the locale restriction is required.

Content

No source excerpt is available for this finding.

Unbounded Output

Medium
Category
Output Handling
Confidence
60% confidence
Finding

Output size or generation rate is not bounded. Unbounded output enables denial-of-service through resource exhaustion, log flooding, or context-window stuffing.

Content

Scanner excerpt · SKILL.md (reported line 166)May include surrounding context.

md
- Arabic text is readable at final size.
- Mixed English/Arabic text renders correctly.
- Numbers, dates, phone numbers, emails, URLs, and prices are unchanged.
- Buttons fit without truncation.
- Error messages explain what the user should do next.
- No private data or test placeholders remain.
- Screenshots and captions match the final text.

Natural-Language Policy Violations

Medium
Category
Not specified by scanner
Confidence
87% confidence
Finding

The metadata repeatedly frames the skill as specifically Arabic-focused through the name, tags, and category, but this file does not indicate any user opt-in, language choice, or region-specific justification. Under the policy, language or locale constraints should be optional or clearly justified to avoid forcing a specific language context.

Content

No source excerpt is available for this finding.

Static analysis

No suspicious patterns detected.