Back to skill

Security audit

TIA CICD DIFF

Security checks for vulnerabilities and agentic risk

Overview

This skill appears to be a local TIA Portal project comparison helper, with no bundled executable code or hidden behavior found.

Install only if you are comfortable letting the agent run a local TIA Openness diff command and read/write project-related files. Review and trust the separate PowerShell or batch diff script you provide, limit inputs to the intended .zap18 files, and treat generated diffs as sensitive engineering output.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.