Back to skill

Security audit

rust-best-practice

Security checks across malware telemetry and agentic risk

Overview

This is a markdown-only Rust best-practices reference skill with no hidden execution, persistence, credential use, or destructive behavior found.

Installers should expect this skill to add a large Rust reference that may be loaded frequently when Rust-related words appear. Review the broad activation wording if context efficiency matters, but the inspected artifact does not request hidden execution, credential access, persistence, or destructive actions.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

High
Confidence
90% confidence
Finding
The instruction to trigger proactively even for small snippets or one-off questions lacks precise activation criteria, so different agents may invoke it inconsistently or over-apply it. That ambiguity can lead to prompt-routing mistakes, unnecessary context loading, and reduced reliability in conversations where Rust is mentioned only tangentially.

Vague Triggers

Medium
Confidence
90% confidence
Finding
The instruction to trigger proactively even for small snippets or one-off questions lacks precise activation criteria, so different agents may invoke it inconsistently or over-apply it. That ambiguity can lead to prompt-routing mistakes, unnecessary context loading, and reduced reliability in conversations where Rust is mentioned only tangentially.

VirusTotal

63/63 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.