Back to skill

Security audit

Kill Tool

Security checks for vulnerabilities and agentic risk

Overview

This skill is a straightforward process-kill utility, but users should understand that force-killing a process can lose unsaved work.

Install only if you need a PID-based process termination helper. Prefer graceful termination first, and use `-9`/SIGKILL only when a process will not stop normally because it can discard unsaved work or prevent cleanup.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Category
Not specified by scanner
Confidence
92% confidence
Finding

This markdown file documents SIGKILL as a supported action and gives a direct example of force-killing a process, but it does not warn that this can cause abrupt termination, lost unsaved work, or skipped cleanup. For markdown files, destructive behaviors that may affect user data or system integrity should include an explicit warning.

Content

No source excerpt is available for this finding.

Static analysis

No suspicious patterns detected.