Security audit
Blue Ocean Strategy
Security checks across malware telemetry and agentic risk
Overview
The inspected skill materials are consistent with their stated helper and administration purposes, with sensitive actions disclosed and gated by user confirmation.
Install only if you want these operational workflows. Before using the moderation, email, Convex production, or autoreview helpers, check the exact command, target, and confirmation flags because some documented actions can send email, change account or publisher state, or invoke external review tools.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
