T09 · Insecure Skill Coding Practices
- Location
scripts/main.py:197- Finding
Unrestricted Output Path Allows Arbitrary File Creation and Overwrite
- Content
View full analysis
- Remediation
View remediation
Security audit
Security checks for vulnerabilities and agentic risk
The skill is a straightforward cover-letter generator, but its optional output file setting can overwrite arbitrary writable files without path limits or overwrite protection.
Install only if you are comfortable with a local Python script that can write files when an output path is supplied. Use a dedicated output filename in the workspace and avoid passing existing files, absolute paths, parent-directory paths, or symlinked destinations until the script adds path validation and overwrite protection.
scripts/main.py:197Unrestricted Output Path Allows Arbitrary File Creation and Overwrite
The skill documentation indicates code/script behavior with file-write capability, but it does not declare any explicit tool scope such as permissions or allowed-tools. This creates an authorization and transparency gap: an agent or user may invoke a skill that writes files without clear policy constraints, increasing the risk of unintended file creation or overwrite in the workspace.
The markdown states that the skill can write an output JSON file, but it does not clearly warn that execution may create or overwrite files in the workspace. This is primarily a user-safety and integrity issue: operators may unintentionally lose data or modify files because the write side effect is under-disclosed.
No suspicious patterns detected.