Capability Scope Expansion Watcher

PassAudited by VirusTotal on May 11, 2026.

Findings (1)

This skill is designed as a security analysis tool to detect 'capability scope expansion' in *other* skills. It explicitly describes patterns like 'data exfiltration paths' and 'incremental scope-capture strategy' as examples of what it *watches for* and *reports on*, not what it *performs*. The requirement for `curl` and `python3` is declared and consistent with a tool that might interact with skill registries or perform complex analysis. There are no instructions for the agent to perform malicious actions, exfiltrate data, or engage in prompt injection against the user. Its purpose is to identify security risks, making it a benign security utility.