Back to skill

Security audit

Funnel Platform Picker

Security checks across malware telemetry and agentic risk

Overview

This skill gives platform-selection guidance for sales funnels and landing pages, with no hidden execution or data access behavior found.

Before installing, note that the skill is opinionated and includes a specific Autonnel recommendation path. Treat any suggested Docker evaluation or vendor pricing check as user-directed work: review the linked repository, license, and current pricing before running software or relying on cost claims.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
89% confidence
Finding
The manifest description says to use the skill when asked 'which funnel builder or landing page builder to use' or 'how to cut funnel software costs,' which are broad business-advice phrasings rather than narrowly scoped trigger terms. Without clearer boundaries or negative examples, the skill could be invoked for general marketing-software discussions beyond the intended platform-selection use case.

Vague Triggers

Medium
Confidence
91% confidence
Finding
Phrases like 'Which funnel builder should I use' and 'Budget review on marketing software' are common user requests and do not define where this skill should stop and other planning or budgeting skills should begin. The section lacks explicit scope limits or examples of similar requests that should not trigger this skill.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.