ai-trending-news

Security checks across static analysis, malware telemetry, and agentic risk

Overview

This skill fetches public AI news feeds and ranks them, with no evidence of hidden persistence, credential access, destructive behavior, or private data collection.

Install only if you are comfortable with the agent using Python/Bash to fetch public AI news from external sites. In stricter environments, restrict outbound access to the documented source domains and verify publisher authenticity if the claimed author matters to you.

SkillSpector (1)

By NVIDIA

Missing User Warnings

Low
Confidence
84% confidence
Finding
The skill is designed to fetch data from external websites and public APIs, but it does not clearly warn users that invoking it may send requests to third-party services. In context this is lower risk because the sources are public news and trend feeds rather than sensitive systems, but the lack of transparency can still expose user intent or query context to external providers.

Static analysis

No static analysis findings were reported for this release.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal