Back to skill

Security audit

Tmp.4dA8h12SBi

Security checks across malware telemetry and agentic risk

Overview

The skill is a disclosed SignUpGenius MCP integration with limited write actions, but it uses account credentials or browser session cookies and should be installed only if the user accepts that access.

Install only if you are comfortable letting the MCP access your SignUpGenius account through cookies, credentials, or an API key. Review prompts carefully before adding group members or submitting RSVPs, and consider pinning or reviewing the external npm package and fetchproxy extension before use.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
91% confidence
Finding
The trigger description is very broad, covering many generic phrases and any request involving SignUpGenius-related activities. Because the skill includes write capabilities such as adding group members and RSVPing, overly permissive invocation criteria can cause the agent to select this skill in situations the user did not clearly intend, increasing the chance of unauthorized or mistaken actions against the user's account.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.