Pans Churn Predictor

Security checks across malware telemetry and agentic risk

Overview

This skill is a local customer churn analysis helper with disclosed local data use and no evidence of network access, credential access, hidden persistence, or destructive behavior.

Install only if local storage and analysis of customer usage, support-ticket, and contract data is acceptable for your workspace. Treat the data and generated churn reports as commercially sensitive, restrict access on shared machines, and prefer explicit commands when invoking the skill because some trigger phrases are broad.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
80% confidence
Finding
The trigger list includes broad business phrases such as '客户成功' and 'churn prediction', which may match ordinary conversation and invoke the skill unexpectedly. In this skill's context, unintended invocation could expose customer health, contract, and support-ticket data or cause unnecessary processing on sensitive local files.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal