Back to skill

Security audit

万能财务会计技能包

Security checks across malware telemetry and agentic risk

Overview

This accounting skill is coherent and clean of malware signals, but it may steer agents into editing or exporting sensitive business spreadsheets without clear confirmation or scope limits.

Review before installing. Use this skill only when you intend the agent to work with accounting records, and require previews plus explicit confirmation before it edits spreadsheets, updates ledgers, changes invoice status, or exports files containing business or financial data.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (3)

Vague Triggers

Medium
Confidence
89% confidence
Finding
The invocation text says to use the skill whenever a user asks about broadly defined finance or accounting work, which can cause the agent to activate this skill during ordinary discussion rather than explicit tool use. In a finance context, unintended activation is risky because the skill is designed to generate accounting outputs and drive operational workflows that may influence sensitive records or decisions.

Vague Triggers

Medium
Confidence
86% confidence
Finding
The trigger phrases in this section are very generic, such as asking to fill forms, generate reports, summarize data, or export Excel, and they overlap with normal user language. This increases the chance of accidental skill invocation and could steer the agent into sensitive spreadsheet or accounting operations without sufficiently explicit authorization.

Missing User Warnings

Medium
Confidence
92% confidence
Finding
This section describes reading business data, calculating financial values, and outputting results to a new sheet or file, but it does not require confirmation, preview, or warnings about modifying business records. In accounting workflows, silent or poorly bounded data-processing actions can corrupt spreadsheets, create inaccurate reports, or expose sensitive financial information through unintended exports.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.