Printer skill

Security checks across malware telemetry and agentic risk

Overview

This is a coherent macOS printer-management skill, with expected commands that can affect printer queues and settings if a user runs them.

Install this only if you want an agent to help manage macOS printers. Before running commands, verify the exact printer name, IP address, file path, and job ID. Explicitly approve any sudo command, queue-wide cancel, disable/reject action, printer removal, Homebrew package install, or persistent launchd keep-alive setup.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
94% confidence
Finding
The skill includes `lpadmin -x MyPrinter`, which removes a printer queue, without warning that the action is destructive or advising confirmation first. In an agent-assisted context, this can cause service disruption, loss of printer configuration, and accidental deletion of the wrong queue if names are misidentified.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal