Security audit
SnapAPI — Web Intelligence for AI Agents
Security checks across malware telemetry and agentic risk
Overview
This is an instruction-only SnapAPI skill for screenshots, page analysis, PDFs, and monitoring, with no hidden code or local persistence found.
Install only if you are comfortable sending selected URLs, HTML, screenshots, and extracted page data to SnapAPI under your API key. Avoid sensitive internal pages unless third-party processing is approved, and only create monitors with clear URL, interval, webhook, and stop expectations.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
66/66 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
