Security audit
markji-card-syntax
Security checks for vulnerabilities and agentic risk
Overview
This skill is a narrow Chinese-language guide for creating Markji card syntax and does not request sensitive access or perform actions outside that purpose.
This appears safe to install for help writing Markji card content. Users should still review generated cards before pasting them, especially any links or user-provided media/card IDs, because the skill is a syntax assistant rather than a verifier of external resources.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
