Back to skill

Security audit

Sprite Tools

Security checks across malware telemetry and agentic risk

Overview

The skill appears to do image processing, but it includes an under-disclosed optional workflow that uploads local images to remove.bg.

Review before installing. Use it only if you are comfortable with the optional remove.bg workflow sending selected images to an external service, and avoid using that path for proprietary, confidential, unreleased, or regulated assets unless the publisher adds clear opt-in and data-handling disclosure.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
  • MCP Tool PoisoningHidden Instructions, Unicode Deception, Parameter Description Injection
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
Findings (3)

Description-Behavior Mismatch

Medium
Confidence
94% confidence
Finding
The skill manifest and primary description present the tool as a local image-processing utility, but the documentation also includes a remote remove.bg workflow that uploads local files to a third-party service. This capability changes the trust boundary and can lead users to exfiltrate image data without expecting network transmission from a nominally local skill.

Context-Inappropriate Capability

Medium
Confidence
96% confidence
Finding
The README introduces use of the remove.bg web API, which sends user-provided image content off-host to an external service. For a skill advertised as local sprite splitting/background removal, this is an unjustified expansion of capability and creates confidentiality and compliance risk for potentially sensitive assets.

Missing User Warnings

Medium
Confidence
95% confidence
Finding
The web API example shows uploading a local image file to remove.bg without an explicit warning that the file contents leave the local environment. This is dangerous because users may treat the skill as offline/local-only and unintentionally transmit proprietary artwork, unreleased game assets, or other sensitive images to a third party.

VirusTotal

VirusTotal findings are pending for this skill version.

View on VirusTotal

Static analysis

No suspicious patterns detected.