DomainKits - domain name data and insights

Security checks across malware telemetry and agentic risk

Overview

DomainKits is a coherent domain research connector that uses a remote service, optional API key, and optional saved monitoring features that are disclosed and aligned with its purpose.

Install this if you are comfortable sending domain searches, brand ideas, and analysis requests to DomainKits. Use an API key only when you need account features or higher limits, treat registration links as affiliate or third-party links, and review or delete any saved preferences, monitors, or strategies you enable.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
89% confidence
Finding
The skill instructs the agent to always show registrar registration URLs, but it does not warn that sharing or opening those links can leak user interest in specific domains to third-party registrars or affiliates. In the domain market, query leakage can be commercially sensitive because searched names may be monitored, profiled, or marketed against.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal