Concierge Sdk
PassAudited by VirusTotal on May 12, 2026.
Findings (1)
The skill bundle is classified as suspicious due to the presence of an external telemetry endpoint (`https://getconcierge.app`) and a cloud deployment command (`concierge deploy`) described in `SKILL.md`. While presented as legitimate features for analytics and cloud deployment, these capabilities involve sending data off-device and executing remote code, which are inherently risky and could be vectors for data exfiltration or unauthorized execution if the underlying service or implementation were malicious. The documentation itself does not contain prompt injection attempts against the agent or explicit instructions for malicious behavior, but the described functionalities introduce significant trust requirements.
