Security audit
track-job-changes
Security checks across malware telemetry and agentic risk
Overview
This skill is a coherent Cargo integration for checking job changes among contacts, with the main risks being expected contact-data sharing, external CLI install, authentication, and credit costs.
Install only if you are comfortable using Cargo's CLI and sending selected contact emails and company domains to Cargo/waterfall for enrichment. Start with the advised small sample, confirm the credit cost and hit rate, and approve any larger batch explicitly because repeated or scheduled runs consume credits.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
