Back to skill

Security audit

Ai Ppt Generator

Security checks for vulnerabilities and agentic risk

Overview

This skill is a disclosed PPT-generation helper that uses SkillBoss API Hub, with privacy and completeness notes but no evidence of hidden, destructive, or persistent behavior.

Before installing, confirm you trust SkillBoss API Hub with the presentation topic and any content you provide, and verify the package includes the referenced scripts if you expect it to work out of the box. Avoid submitting confidential business, personal, or regulated information unless your organization permits that external processing.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (2)

Missing User Warnings

Medium
Category
Not specified by scanner
Confidence
93% confidence
Finding

The skill explicitly routes user-provided presentation topics to an external third-party service (SkillBoss API Hub) but does not disclose that data leaves the local agent context. Users may unknowingly submit sensitive business plans, internal reports, or personal information to an external processor, creating privacy, confidentiality, and compliance risk.

Content

No source excerpt is available for this finding.

Natural-Language Policy Violations

Medium
Category
Not specified by scanner
Confidence
84% confidence
Finding

Several template names and example inputs are shown only in Chinese, which suggests a fixed language/locale expectation in the skill's user-facing behavior. There is no explicit opt-in, language selection, or statement that this skill is intentionally limited to a Chinese-language or region-specific context.

Content

No source excerpt is available for this finding.

Static analysis

No suspicious patterns detected.