Kr Crypto Skill Publish
Security checks across malware telemetry and agentic risk
Overview
This skill is a clearly disclosed paid remote data service for Korean crypto and news analysis, with the main user risk being controlled spending and external API calls.
Install only if you are comfortable using a remote paid MCP service. Keep payment confirmation enabled, set a spending limit, and avoid sending unnecessary private context in tool calls.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
65/65 vendors flagged this skill as clean.
