Security audit
Commerce And Trade Competitiveness Data Hub
Security checks across malware telemetry and agentic risk
Overview
This skill is a disclosed AgentPMT wrapper for querying trade and competitiveness data, with no evidence of hidden local access, persistence, or unsafe behavior.
Before installing, confirm you are comfortable using AgentPMT as an external service and spending the listed 5 credits per query. Keep account secrets, wallet keys, signatures, and payment headers out of prompts or logs, as the skill itself also advises.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
63/63 vendors flagged this skill as clean.
