Fit

Security checks across malware telemetry and agentic risk

Overview

This is a simple fitness-coaching prompt with no code or system access, but its injury advice should not be treated as medical guidance.

Install only if you are comfortable discussing fitness and health-adjacent information such as weight, training history, sleep, energy, and injuries with your agent. Do not rely on this skill for medical diagnosis, treatment, acute injuries, severe or persistent pain, swelling, loss of function, neurological symptoms, eating disorders, or clinician-directed rehabilitation.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
93% confidence
Finding
The skill explicitly claims applicability to 'recovering from injury' and later gives return-to-training guidance without a clear medical disclaimer or escalation criteria. In a fitness context, this increases the risk that users rely on generalized advice for conditions that may require diagnosis, rest, imaging, or supervised rehabilitation, potentially worsening an injury.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal