Back to skill

Security audit

Ticket Signal Watch

Security checks for vulnerabilities and agentic risk

Overview

This skill appears to be a disclosed ticket-page monitoring tool that creates local alert data and does not automate checkout or handle payments.

Install if you want a tool that monitors ticket pages you configure and stores local monitoring history. Use official URLs, avoid internal or sensitive endpoints, keep the state file private, and store any real webhook tokens outside shared example files.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.