Back to skill

Security audit

pocket-recordings-transcripts

Security checks across malware telemetry and agentic risk

Overview

This skill gives an agent access to Pocket recordings, transcripts, summaries, audio links, and uploads in a way that is clearly tied to its stated purpose.

Install this only for users who intend their agent to access Pocket recordings. Treat transcripts, summaries, tags, and audio as potentially confidential, prefer temporary download URLs for one-time access, and use save/upload actions only when you are comfortable creating or transmitting copies through AgentPMT, Pocket, and File Manager.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (4)

Missing User Warnings

Medium
Confidence
91% confidence
Finding
This skill is explicitly designed to retrieve transcripts, AI summaries, and audio from conversations, which are often highly sensitive and may contain personal, financial, legal, or business-confidential information. Although the skill includes a generic note not to place secrets in prompts or logs, it does not clearly warn users that using search, transcript retrieval, download, and upload features can expose or persist sensitive conversation data across systems and workflows.

Missing User Warnings

Medium
Confidence
94% confidence
Finding
The documented save_audio_to_files action creates a persistent copy of recording audio in File Manager, but the skill does not prominently warn that this changes the data lifecycle from remote access to stored retention. For sensitive meeting or call recordings, persistence increases the chance of unauthorized reuse, broader access, accidental sharing, and retention beyond the user's intent.

Missing User Warnings

Medium
Confidence
93% confidence
Finding
The upload_recording action sends user-provided audio to Pocket for transcription, which is a third-party processing step involving potentially sensitive voice content. If the skill does not clearly warn users about this external transmission, agents may upload recordings containing confidential conversations, regulated data, or personal information without informed consent.

Missing User Warnings

Low
Confidence
87% confidence
Finding
The save_audio_to_files action creates a persistent copy of a recording in File Manager, which increases data exposure and retention beyond temporary access. Without an explicit warning, users or agents may assume the action is a transient fetch rather than a storage operation, causing accidental duplication of sensitive audio into longer-lived storage.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.