Pet Care Companion

Security checks across malware telemetry and agentic risk

Overview

This is a simple pet-care guidance skill with disclosed pet profile and location use, no executable code, and no elevated permissions.

Before installing, consider that prompts may include pet health details and location for hospital search. Share only the details needed, prefer coarse location when possible, and treat symptom guidance as informational rather than a substitute for veterinary care.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Low
Confidence
89% confidence
Finding
The skill explicitly invites users to submit pet symptoms and search for nearby veterinary hospitals, which implies collection or processing of health-related pet information and location data. Even though this is not highly sensitive human medical data, the absence of any privacy notice, data handling explanation, or minimization guidance can lead users to overshare identifiable household location and animal health details without informed consent.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal