Security audit
YouTube Reporting
Security checks across malware telemetry and agentic risk
Overview
This is a disclosed YouTube Reporting helper that uses a Maton API key and OAuth connection to manage and download YouTube reporting data.
Install only if you trust Maton to proxy YouTube Reporting API requests and manage OAuth access for your YouTube channel data. Keep MATON_API_KEY private, avoid exposing connection session URLs in shared logs, confirm the selected account when multiple connections exist, and approve job or connection changes only when you understand their ongoing effect.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
