Back to skill

Security audit

YouTube Reporting

Security checks across malware telemetry and agentic risk

Overview

This is a disclosed YouTube Reporting helper that uses a Maton API key and OAuth connection to manage and download YouTube reporting data.

Install only if you trust Maton to proxy YouTube Reporting API requests and manage OAuth access for your YouTube channel data. Keep MATON_API_KEY private, avoid exposing connection session URLs in shared logs, confirm the selected account when multiple connections exist, and approve job or connection changes only when you understand their ongoing effect.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal