Polsia Frontend Design
Security checks across malware telemetry and agentic risk
Overview
This appears to be a coherent ClawHub/Convex maintainer skill bundle with disclosed powerful workflows that require user direction before impactful actions.
Install only if you want ClawHub maintainer and Convex development workflows. Review the staff moderation, migration, and autoreview sections before use, especially because invoked commands can affect production data, send staff email, use admin credentials, or run nested review tools with broad local access.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
