Commit Diff Analyzer

Security checks across malware telemetry and agentic risk

Overview

This is an instruction-only git diff helper that uses standard read-only git commands and does not request persistence, credentials, network access, or install-time execution.

This skill appears safe for normal use as a commit comparison helper. Be aware that it may display source code, commit history, and file changes from the current repository in the chat, so use it only where that repository content is appropriate to expose to your agent session.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

VirusTotal

VirusTotal findings are pending for this skill version.

View on VirusTotal