AI Sales Closing & Offer Generator

Security checks across malware telemetry and agentic risk

Overview

This is a prompt-only sales writing skill that creates persuasive closing copy but does not install code, access systems, or send messages automatically.

Safe to install for sales-assistance use. Use it only for real sales contexts, review all generated copy before sending, avoid false urgency or unsupported ROI claims, and do not paste unnecessary confidential customer information.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
90% confidence
Finding
The skill’s trigger guidance explicitly says to invoke on broad, casual phrasing, which materially increases the chance of unintended activation outside a clearly bounded sales-closing context. Over-broad invocation can cause the agent to route unrelated user requests into persuasive sales-generation behavior, leading to context confusion, inappropriate assistance, or misuse in conversations that were not actually asking for sales-closing help.

Vague Triggers

Medium
Confidence
87% confidence
Finding
The invocation examples cover a wide range of loosely related phrases without guardrails, which broadens matching beyond well-scoped sales-closing tasks. In practice, this can cause accidental invocation on generic requests about proposals, negotiation, or messaging, increasing the risk of wrong-skill execution and persuasive content generation in contexts where it is not appropriate.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal