Back to skill

Security audit

Short Drama Emotion Curve

Security checks for vulnerabilities and agentic risk

Overview

This is a Chinese-language writing aid for short-drama emotion pacing, with no executable code, hidden behavior, data access, persistence, or privilege requests.

Install this if you want Chinese-language guidance for short-drama emotional pacing. Be aware that its broad emotion-related triggers may appear in ordinary creative requests, so it may be helpful to invoke it only when working on short dramas, short videos, or emotional arc design.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • MCP Tool PoisoningHidden Instructions, Unicode Deception, Parameter Description Injection
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
Findings (3)

Vague Triggers

Medium
Category
Not specified by scanner
Confidence
92% confidence
Finding

The trigger list includes several broad, common terms such as '共情', '情感', and '代入感'-style concepts that can appear in many ordinary creative or conversational requests. This can cause the skill to activate outside its intended short-drama design context, leading to prompt hijacking of unrelated tasks, degraded routing quality, or accidental insertion of domain-specific instructions.

Content

No source excerpt is available for this finding.

Natural-Language Policy Violations

Medium
Category
Not specified by scanner
Confidence
88% confidence
Finding

The skill metadata and content are written entirely in Chinese and do not indicate language negotiation or fallback behavior, which can cause forced Chinese responses when the user's preferred language differs. While not a direct security exploit, this can undermine system predictability, cause instruction mismatch, and increase the chance of unsafe or incorrect handling in multilingual environments.

Content

No source excerpt is available for this finding.

Natural-Language Policy Violations

Low
Category
Not specified by scanner
Confidence
90% confidence
Finding

This markdown file presents all instructional content in Chinese and does not indicate that users may select another language or that the skill is intentionally limited to a Chinese-speaking audience. Under the language/locale policy, forcing a specific language without user opt-in can be a natural-language policy violation.

Content

No source excerpt is available for this finding.

Static analysis

No suspicious patterns detected.