Security audit
JoinQuant Strategy Backtest
Security checks across malware telemetry and agentic risk
Overview
This skill is a coherent JoinQuant backtest code-generation aid, with no evidence of hidden credential access, persistence, or unrelated data handling.
Install this as a code-generation reference for JoinQuant strategies, not as an autonomous trading system. Review any generated strategy before running it, especially order sizing, rebalance logic, commissions, and whether the target environment is backtest, paper, or live trading.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
65/65 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
