Back to skill

Security audit

competitor-profiling

Security checks across malware telemetry and agentic risk

Overview

This skill performs disclosed competitor research and writes local profile data, with no evidence of hidden, destructive, or exfiltrating behavior.

Before installing, be aware that this skill will save raw competitor research data locally under competitor-profiles/ and may read existing product-marketing context files if present. Keep or delete those files according to your own retention and confidentiality needs, especially if scraped review pages contain personal or licensed content.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • MCP Tool PoisoningHidden Instructions, Unicode Deception, Parameter Description Injection
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (3)

Description-Behavior Mismatch

Medium
Confidence
90% confidence
Finding
The skill materially expands its behavior from generating markdown profiles to persistently storing raw scraped pages, SEO JSON, and review data on disk. This increases data retention risk, may capture unexpected third-party or user-related content, and creates an audit/privacy surface not disclosed in the skill description.

Description-Behavior Mismatch

Medium
Confidence
76% confidence
Finding
The skill instructs reading local product-marketing context files and comparing competitors against the user's own product, which broadens scope beyond the manifest's stated input/output contract. While not inherently malicious, this hidden capability can surprise users, pull in local context without clear disclosure, and affect how collected data is used.

Missing User Warnings

Medium
Confidence
93% confidence
Finding
The skill explicitly directs persistent storage of raw scrape, SEO, and review outputs without any notice about retention, sensitivity, or the possibility of storing third-party content. Even if the sources are public, retaining full raw data can accumulate personal data, licensed content, or unnecessary artifacts that increase privacy, compliance, and data-exposure risk.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.