Security audit
Security Skill Scanner
Security checks across malware telemetry and agentic risk
Overview
This is a disclosed security-scanner skill; its optional install hook and scheduled scans are powerful but visible, user-directed, and aligned with the stated purpose.
Install is reasonable if you want a security-scanner workflow. Only add the molthub shell wrapper or cron jobs if you are comfortable letting this skill mediate future skill installs and run periodic scans; review the referenced scripts and paths first, and keep a backup of any shell-profile changes.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
66/66 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
