Back to skill

Security audit

Tmp.6TfHJivEo5

Security checks across malware telemetry and agentic risk

Overview

This skill is a clearly described Artsonia MCP integration, but users should treat it as sensitive because it handles student artwork, account credentials, local downloads, and social actions.

Install only if you trust the MCP server and the machine where it runs. Use an Artsonia account appropriate for this access, avoid shared or untrusted hosts, review write actions like comments, fan invites, and notification changes before sending them, and choose download destinations carefully because student artwork and related metadata may persist on disk.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
Findings (3)

Vague Triggers

Medium
Confidence
94% confidence
Finding
The trigger text ends with a broad catch-all for "any request involving student art portfolios on Artsonia," which can cause the skill to activate on loosely related prompts without clear user intent. Because this skill can access student data, post comments, invite fans, and manage notifications, overbroad activation increases the chance of unintended access or actions involving minors' portfolio information.

Missing User Warnings

Medium
Confidence
91% confidence
Finding
The skill exposes a download capability that can write artwork images, manifests, and metadata sidecar files to local storage, but the description does not prominently warn users that files may be created on disk. In a context involving student artwork and associated comments or teacher feedback, silent local persistence can surprise users and expand privacy exposure on shared or unmanaged machines.

Missing User Warnings

Medium
Confidence
93% confidence
Finding
The authentication section states that the server uses Artsonia username/password credentials and maintains a session cookie, but it does not clearly warn about the privacy and security implications of supplying account credentials to the MCP server. Because the account provides access to student portfolios and related social features, insufficient disclosure can lead users to expose sensitive credentials and authenticated student data without understanding the trust boundary.

VirusTotal

62/62 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.