Marketing Brand Playbook

Security checks across malware telemetry and agentic risk

Overview

This is a marketing guidance skill with broad activation wording, but it does not include code, credential access, hidden automation, or data-handling behavior.

Install this if you want broad CMO-style marketing guidance available across marketing and growth conversations. Review the source before using the global auto-confirm install command, and remove --yes if you want install prompts.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

High
Confidence
98% confidence
Finding
The manifest says to trigger on "ANY marketing, branding, growth, or go-to-market topic" and adds "If in doubt, use this skill." Those conditions are extremely broad, overlap with ordinary business conversation, and provide no limiting constraints or negative examples, increasing the risk of unintended invocation.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal