Raindrop Io

Security checks across malware telemetry and agentic risk

Overview

This is an unfinished Raindrop.io skill template with no executable code or sensitive access behavior.

Install only if you are comfortable with a placeholder that likely will not help manage Raindrop.io bookmarks yet. Do not provide Raindrop.io tokens or expect account actions until a completed version clearly documents its workflow and access requirements.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
97% confidence
Finding
The skill metadata and body are still template placeholders and do not specify what the skill does, when it should be invoked, or what inputs/tasks it is intended to handle. In an agent system, ambiguous activation guidance can cause the wrong skill to be selected for unrelated tasks, increasing the chance of unsafe actions, misuse of future scripts/resources, or bypass of expected task boundaries.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal