Back to skill

Security audit

统计假设检验技能

Security checks for vulnerabilities and agentic risk

Overview

This skill is a straightforward local statistics helper that reads user-provided data and returns hypothesis-test results.

Install only if you want a local command-line helper for hypothesis testing. Be aware that it reads the file paths you pass as input and can write an output file when requested, so provide only the data files and output locations you intend to use.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.