Back to skill

Security audit

Storybook Component Doc

Security checks for vulnerabilities and agentic risk

Overview

This is a straightforward Storybook documentation skill with user-run setup examples, not hidden code or persistent behavior.

Install only if you want Storybook-focused component documentation help. Before copying commands, pin package versions where practical, run them in the intended project, and keep Chromatic tokens in environment variables or CI secrets rather than inline shell history.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
Findings (7)

Skill Enumeration

Medium
Category
Agent Snooping
Confidence
80% confidence
Finding

Skill enumerates or reads other installed skills. Access to other skills' SKILL.md files or the skills directory reveals prompt instructions, capabilities, and secrets that should be invisible to peer skills.

Content

Scanner excerpt · README.md (reported line 10)May include surrounding context.

md
- ID: `fec-storybook-component-doc`
- Category: `design-ui`
- Version: `2.9.0`
- Source: `skills/fec-storybook-component-doc/SKILL.md`

## Description

Vague Triggers

Medium
Category
Not specified by scanner
Confidence
84% confidence
Finding

The description says to use the skill for a very wide set of situations, including broad phrases like reviewing component documentation, design-system presentation, and broader Storybook-related topics. It also says Chinese triggers include generic terms such as "Storybook" and "Design System," which are common topic mentions and may overlap with ordinary discussion rather than a clear activation boundary.

Content

No source excerpt is available for this finding.

Vague Triggers

Medium
Category
Not specified by scanner
Confidence
90% confidence
Finding

This is a manifest file, so vague-trigger review applies. The description begins with "Use when setting up or reviewing..." followed by a long list of loosely related Storybook/UI activities, but it does not clearly define boundaries beyond one contrast with broader testing, which could cause the skill to match many ordinary frontend requests without precise trigger constraints or negative examples.

Content

No source excerpt is available for this finding.

Rp1

Medium
Category
MCP Rug Pull
Confidence
93% confidence
Finding

The documentation instructs users to run npx storybook@latest init, which pulls and executes code at install time from a moving target version. Using latest reduces reproducibility and increases supply-chain risk because a compromised or breaking upstream release could be executed immediately in the user's environment.

Content

No source excerpt is available for this finding.

Rp1

Medium
Category
MCP Rug Pull
Confidence
89% confidence
Finding

The command npx chromatic --project-token=<token> executes an unpinned package from the registry, exposing users to supply-chain compromise or unexpected behavior from upstream changes. Because this command also includes a project token, misuse could combine code-execution risk with CI or project-integrity exposure.

Content

No source excerpt is available for this finding.

Rp1

Medium
Category
MCP Rug Pull
Confidence
88% confidence
Finding

The example npx test-storybook runs an unpinned package version, so users may execute arbitrary install-time scripts or altered behavior from whichever version resolves at runtime. In documentation intended to be copied directly, this materially increases the chance of unsafe or non-reproducible execution.

Content

No source excerpt is available for this finding.

Natural-Language Policy Violations

Low
Category
Not specified by scanner
Confidence
90% confidence
Finding

The description explicitly states that 'Chinese triggers include Storybook, component documentation, Design System, visual regression,' which introduces a language-specific activation policy. Because the file does not offer a user language choice or explain a justified region-specific constraint, this appears to violate the language/locale policy requirement.

Content

No source excerpt is available for this finding.

Static analysis

No suspicious patterns detected.