DePIN

Security checks across malware telemetry and agentic risk

Overview

This is an informational DePIN/crypto analysis skill with no executable behavior, but users should treat its investment and hardware-economics guidance as informational only.

Install only if you want general DePIN research assistance. Do not treat its outputs as personalized financial, legal, tax, or operational advice; verify current token prices, project documentation, reward schedules, hardware costs, regulatory constraints, and downside scenarios before spending money or deploying hardware.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
86% confidence
Finding
The skill description is broad and lacks clear activation boundaries, so an agent may invoke it for loosely related crypto, investing, or infrastructure questions beyond the author's intended scope. In a domain involving financial decision support, ambiguous routing increases the chance of overconfident or inapplicable guidance being surfaced to users in situations with materially different risks.

Missing User Warnings

Medium
Confidence
94% confidence
Finding
The skill provides investment and hardware-deployment evaluation guidance without a clear user warning that outcomes can involve capital loss, illiquidity, token volatility, operational failure, and regulatory risk. In this context, omission of risk disclosures can cause users to treat analytical output as actionable financial or operational advice, increasing the likelihood of harmful real-world decisions.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal