Back to skill

Security audit

Social0

Security checks across malware telemetry and agentic risk

Overview

This skill clearly describes a Social0 integration for drafting, scheduling, and publishing social media posts, with sensitive actions disclosed and proportionate to that purpose.

Before installing, understand that this skill can help an agent publish real posts to connected social accounts. Use drafts for testing, keep the Social0 API key private, review target accounts and platforms before publishing, and revoke connector keys from the Social0 dashboard if no longer needed.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

VirusTotal

55/55 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.