Comfyskill

Security checks across malware telemetry and agentic risk

Overview

This skill openly sends image prompts to a local ComfyUI service, with the main caution that its network use is not formally permission-scoped.

Install only if you intend your agent to send prompts and workflow data to your ComfyUI endpoint. Keep COMFYUI_ENDPOINT local or otherwise trusted, review WORKFLOW_PATH before use, and remember that ComfyUI may save generated images according to the workflow.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • MCP Least PrivilegeUnderdeclared Capability, Wildcard Permission, Missing Permission Declaration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Lp3

Medium
Category
MCP Least Privilege
Confidence
92% confidence
Finding
The skill declares it will send user prompts to a local ComfyUI endpoint over HTTP, which is a network-capable action, yet no permissions are declared. Undeclared network capability weakens transparency and consent boundaries, and because the endpoint is localhost it may expose or drive a locally running service the user did not expect the skill to access.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal