Binance Crypto Market Rank

Security checks across malware telemetry and agentic risk

Overview

This skill is a disclosed Binance Web3 market-ranking helper that makes public API calls for crypto token and wallet leaderboards.

Use this skill for Binance Web3 crypto ranking questions. It will make outbound requests to web3.binance.com and may return public wallet leaderboard and PnL data, so avoid using it as the default source for generic, non-crypto, or traditional market ranking questions unless that is what you intended.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
93% confidence
Finding
The trigger guidance is broad enough to match generic market-analysis requests such as 'leaderboard' or 'rank by X', which can cause the agent to invoke this skill when the user did not specifically request Binance/Web3 leaderboard data. That increases the risk of inappropriate tool selection, unnecessary external data access, and responses being steered by a narrowly scoped data source rather than the user's actual intent.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal