Security audit
angel-diligence
Security checks for vulnerabilities and agentic risk
Overview
This skill is a well-scoped investment research memo helper that uses public web research, keeps private deck details out of searches, and avoids making investment decisions.
Before installing, understand that this skill is meant to support diligence, not provide financial advice. It will perform public web research and may create a local memo file; users should review citations, keep confidential deck details out of external searches, and make their own investment decision.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
