Back to skill

Security audit

Vaultline

Security checks across malware telemetry and agentic risk

Overview

This Vaultline skill is purpose-built for external storage, but it should be reviewed because it can upload/delete files and automatically retry paid storage operations without clear user confirmation rules.

Install only if you intend to let an agent manage Vaultline storage with wallet-auth and possible x402 payments. Use a dedicated low-balance wallet, confirm before uploads, deletes, or any paid retry, and avoid storing sensitive plaintext unless you understand that encrypted storage is described as not live yet.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
89% confidence
Finding
The invocation description is broad enough to match many common storage-related tasks, including routine file handling, deletion, and retrieval. In an agent setting, this can cause the skill to be selected too often and grant it control over external networked storage and destructive operations without sufficiently narrow scoping, increasing the chance of unintended uploads, deletions, or paid requests.

Missing User Warnings

Medium
Confidence
94% confidence
Finding
The skill explicitly supports deletion, paid x402 retries, and uploads/downloads to an external service, but it does not require any user-facing warning or confirmation about irreversible data loss, billing, or off-device data transmission. In agent workflows, that omission can lead to silent destructive actions, unexpected charges, or privacy-impacting uploads based solely on broad task matching.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.