MooTeam CRM

Security checks across malware telemetry and agentic risk

Overview

This skill is a disclosed MooTeam API client that can change live project-management data, but its behavior matches its stated purpose.

Install only if you intend to let an agent operate your MooTeam account. Use the least-privileged token available, keep the token out of chat and logs, verify target IDs before updates or deletes, and supervise any command that deletes or changes projects, tasks, comments, workflows, statuses, labels, team mappings, timers, or time logs.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (2)

Missing User Warnings

Medium
Confidence
91% confidence
Finding
The documentation exposes destructive commands such as project, task, comment, workflow, status, label-group, label, and time deletion without any warning, confirmation guidance, or recommendation for dry-run/verification. In an agent-driven context, this increases the chance of accidental or overly broad destructive actions against live project-management data.

Missing User Warnings

Low
Confidence
82% confidence
Finding
The skill instructs users to configure an API bearer token and company identifier for HTTP-based integration but does not include guidance on secret handling, storage, redaction, or limiting disclosure in logs and responses. This omission can lead to credential leakage through configuration files, terminal history, debugging output, or agent responses.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal