Security audit
校准作业指导书技能
Security checks for vulnerabilities and agentic risk
Overview
This skill is a calibration-document drafting helper with no hidden data access, persistence, or privileged behavior in the inspected artifact.
This appears safe to install from a security perspective, but users should manually verify any recommended calibration standard, tolerance, and version before relying on generated documents for regulated or professional metrology work. The referenced generator script and templates were not included in the artifact, so some documented workflow steps may not function unless provided separately.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
