Back to skill

Security audit

DCL Policy Enforcer

Security checks for vulnerabilities and agentic risk

Overview

This skill is a clearly disclosed policy-audit integration that can make paid remote MCP calls, with no hidden code or broad local access found.

Install only if you want an external Fronesis Labs MCP service to audit selected AI outputs and you are comfortable with per-call USDC charges, remote evaluation, and persistent hash-based audit records. Use the included manual checklist instead when you do not want a network call or payment.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.