Back to skill

Security audit

GitHub

Security checks across malware telemetry and agentic risk

Overview

This skill is a disclosed GitHub integration that uses Maton OAuth/API access and includes appropriate cautions for write actions.

Install only if you trust Maton to broker your GitHub OAuth access. Before using it for writes, confirm the exact repository, account connection, and whether the action is reversible, especially for merges, deletes, branch changes, collaborator changes, or organization-level actions.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
89% confidence
Finding
The activation guidance is broad enough that an agent could invoke this skill for general GitHub-related requests without sufficiently narrowing scope to a specific repository, organization, or operation. In a skill that can perform authenticated read and write actions across connected GitHub accounts, overbroad routing increases the chance of unintended data access or modification.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.