AI Web Automation

Security checks across malware telemetry and agentic risk

Overview

This skill is a simple user-directed web scraper with overbroad documentation, but no evidence of hidden, destructive, credential-stealing, or persistent behavior.

Install only if you need a basic webpage scraper. Use it only on sites you are authorized to access, avoid internal or sensitive network addresses, and do not rely on the advertised cron, proxy, browser automation, form submission, or notification features unless a future version provides reviewed code for them.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
90% confidence
Finding
The skill explicitly advertises web scraping, scheduled tasks, automated submissions, proxy pool support, and email/notification integration, but provides no guardrails, rate-limit guidance, authorization requirements, or warning about impact on third-party systems and data handling. In an automation skill, these capabilities can be misused for spam, abusive scraping, unauthorized interaction with external sites, or unattended activity, so the missing safety constraints materially increase misuse risk.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal