Back to skill

Security audit

Doc

Security checks for vulnerabilities and agentic risk

Overview

This is an instruction-only documentation co-authoring workflow with no executable payload and only purpose-aligned use of files, connectors, and sub-agents when relevant to drafting documents.

Reasonable to install for documentation work. When using it with workplace connectors or files, point it only at specific relevant docs, channels, or threads, avoid unnecessary secrets or personal data, and review the final document for sensitive details before sharing.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.