seo-audit

Security checks across malware telemetry and agentic risk

Overview

This SEO audit skill is coherent and purpose-aligned, with normal privacy cautions around site, Search Console, analytics, and marketing-context data.

Safe to install for SEO audit work. Use least-privilege access for Search Console or analytics, review `.claude/product-marketing-context.md` before relying on it, and run the helper script only against pages, files, or URLs you intend to audit.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
77% confidence
Finding
The skill description and trigger phrases are broad enough that the agent may invoke this skill in loosely related marketing or ranking discussions, which can cause context drift or unintended data requests. While not a direct security exploit, over-broad auto-invocation can increase unnecessary access to site, analytics, or Search Console-related information and lead to improper tool usage.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal