Back to skill

Security audit

内容写作优化技能

Security checks for vulnerabilities and agentic risk

Overview

This is a low-risk writing-style skill that only gives prose-editing guidance and does not include executable code or sensitive access.

This skill should mainly affect writing style. Before installing, confirm the publisher and package identity are the ones you intend because the artifact metadata does not perfectly match the registry metadata. Avoid enabling it where its style preferences conflict with a strict house style.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.