Sysinfo Demo

Security checks across malware telemetry and agentic risk

Overview

This skill only gives read-only local system status using standard commands, with no persistence or hidden behavior found.

Install only if you are comfortable with the agent running `df -h`, `uname -a`, and `uptime` when you ask about machine status, because those outputs can reveal local system and mount information.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
90% confidence
Finding
The trigger phrase includes a broad catch-all like '这台机器现在状态怎么样', which can match many generic user requests and cause the skill to activate unexpectedly. Because the skill executes local system commands, overbroad invocation increases the chance of unnecessary disclosure of host disk, uptime, load, and OS details in contexts where the user did not explicitly request system inspection.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal