Back to skill

Security audit

ai-opportunity-discovery

Security checks across malware telemetry and agentic risk

Overview

This skill is a self-contained business consulting workflow and does not ask for code execution, credentials, persistence, or external data transfer.

Before using it, expect to share business process details, tools, constraints, and pain points. Avoid providing secrets, credentials, or highly sensitive customer data unless your agent environment is approved for that information, and treat the final roadmap as advisory before spending money or changing operations.

Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Low
Confidence
89% confidence
Finding
This markdown file describes invocation with a natural-language prompt: "Analyze my business and tell me where I should — and shouldn't — use AI." The README does not provide tighter trigger constraints, alternative exact phrases, or exclusion conditions, so the activation description is somewhat open-ended and could collide with ordinary agent requests about business analysis.

VirusTotal

61/61 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.