Security audit
Structured Rads Report Drafter
Security checks across malware telemetry and agentic risk
Overview
This skill is a disclosed draft-only radiology report helper with strong PHI-minimization and attending review safeguards, and no executable or persistent behavior.
Installers should treat the output as draft clinical documentation only. Users should avoid entering direct patient identifiers, confirm that accession-number handling fits their privacy environment, verify current ACR lexicon and institutional requirements, and require attending radiologist review before any clinical use.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
