Back to skill

Security audit

Parallel Dispatch

Security checks for vulnerabilities and agentic risk

Overview

This skill is a small, disclosed parallel-task scheduling guide with no executable payload, persistence, credential access, or hidden behavior found.

Before installing, note that this skill may encourage the agent to run multiple independent tasks at once. Use it for clearly separable work, and avoid batching destructive or account-changing tasks unless you explicitly want those actions performed in parallel.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Rogue AgentSelf-Modification, Session Persistence
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (3)

Self-Modification

High
Category
Rogue Agent
Confidence
85% confidence
Finding

Skill modifies its own code, configuration, or behavior at runtime. Self-modification enables an agent to escalate privileges, disable safety constraints, or install persistent backdoors.

Content

Scanner excerpt · SKILL.md (reported line 1)May include surrounding context.

md
# Parallel Dispatch Skill

**版本**: v1.0
**创建日期**: 2026-03-26

Self-Modification

High
Category
Rogue Agent
Confidence
85% confidence
Finding

Skill modifies its own code, configuration, or behavior at runtime. Self-modification enables an agent to escalate privileges, disable safety constraints, or install persistent backdoors.

Content

Scanner excerpt · SKILL.md (reported line 12)May include surrounding context.

md
## 🎯 核心功能

Parallel Dispatch skill负责:
1. **任务识别**: 识别哪些任务可以并行执行
2. **依赖分析**: 分析任务之间的依赖关系
3. **并行调度**: 使用多线程/多进程并行执行任务

Natural-Language Policy Violations

Medium
Category
Not specified by scanner
Confidence
93% confidence
Finding

The file presents core metadata such as version, creation date, author, and purpose entirely in Chinese, and the rest of the document continues primarily in Chinese without indicating that users may choose another language. This can violate a language/locale policy when a skill effectively forces a specific language without user opt-in.

Content

No source excerpt is available for this finding.

Static analysis

No suspicious patterns detected.