Security audit
Travel Advisor — Repeat-Client Relationship Ladder
Security checks for vulnerabilities and agentic risk
Overview
This is a non-executable travel-advisor planning skill with coherent guidance and no hidden or high-impact system behavior.
Review the client-profile workflow for privacy and consent before storing birthdays, school calendars, travel preferences, referrals, or testimonials in your CRM. The skill itself is plain guidance and does not install code or request special access.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
