Back to skill

Security audit

Market Analysis Cn Jarvis

Security checks for vulnerabilities and agentic risk

Overview

This is a simple Chinese/China-oriented market analysis skill with pricing information and no executable code, persistence, credential use, or hidden system behavior.

Before installing, understand that this skill is presented mainly for Chinese/China-market analysis and lists paid service tiers. Use it deliberately for market-analysis requests, and avoid sending confidential business data unless you trust the provider and payment/data handling outside the artifact is clear.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (4)

Natural-Language Policy Violations

Medium
Confidence
82% confidence
Finding
The skill name includes the locale marker "cn" and the user-facing title and primary description are presented in Chinese without stating that users may choose their preferred language. This may violate language/locale policy if the skill defaults to a specific language rather than offering opt-in or a documented regional justification.

Vague Triggers

Medium
Confidence
94% confidence
Finding
The description includes broad trigger terms such as “市场分析”, “竞品分析”, “market analysis”, and “趋势”, which are common phrases that may appear in ordinary conversation. This can cause the skill to activate when the user did not explicitly request this specific paid market-analysis service, creating routing confusion and possible unintended disclosure of user context to the skill.

Natural-Language Policy Violations

Low
Confidence
84% confidence
Finding
The slug `market-analysis-cn-jarvis` includes a `cn` locale/region marker, which suggests the skill may be constrained to a specific language or locale. In this file there is no accompanying explanation, opt-in mechanism, or documented justification for that locale restriction.

Natural-Language Policy Violations

Low
Confidence
86% confidence
Finding
The package name and description explicitly label the skill as "CN" / "市场分析服务", indicating a China-specific locale variant, but the file provides no natural-language indication that users can choose a locale or that the locale restriction is intentionally justified. This can be a language/locale policy concern because the metadata appears to impose a locale context without user opt-in.

Static analysis

No suspicious patterns detected.