Back to skill

Security audit

Handoff Receiver

Security checks for vulnerabilities and agentic risk

Overview

This skill is a local handoff-management guide that reads and updates project handoff files, with no hidden executable code or network behavior.

Install this if you want an agent to manage local handoff state while resuming work. Review handoff files before use in shared or untrusted repositories, because the skill will follow the active handoff and intentionally update CURRENT, INDEX.md, and handoff status fields.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.