Back to skill

Security audit

CMIC Skill Scanner (macOS ARM64)

Security checks across malware telemetry and agentic risk

Overview

The skill is mostly transparent about scanning behavior, but the reviewed package is missing the executable/checksum it tells users to run and verify, while also documenting optional data-upload paths.

Install only after resolving the package mismatch: confirm where the actual skillscan executable and checksum come from, verify the checksum yourself, and prefer --engine native if you do not want an external scanner invoked. Treat --upload-url and --use-llm as data-sharing features and use them only with endpoints you trust.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
91% confidence
Finding
The installation guide explicitly documents uploading scan results to a remote URL and states that the payload includes full embedded review details and findings for each skill. That can expose sensitive source content, proprietary skill metadata, secrets accidentally captured in findings, or internal security posture data without a strong warning, confirmation step, or guidance to sanitize data before transmission.

VirusTotal

VirusTotal findings are pending for this skill version.

View on VirusTotal

Static analysis

No suspicious patterns detected.