Book Piano Lessons

Security checks across malware telemetry and agentic risk

Overview

This is a simple piano-lesson booking skill that uses Lokuli as disclosed, but users should review details before sharing contact information or creating a booking.

Install only if you are comfortable using Lokuli to search for and book piano lessons. Before allowing a booking, confirm the provider, time, price or cancellation terms if shown, and the name, email, and phone number that will be sent.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
91% confidence
Finding
The trigger language is broad enough to activate on generic service-seeking requests for piano lessons without clear constraints, which can cause the skill to run in contexts the user did not intend. In an agent setting, overbroad routing can lead to premature external tool use, unnecessary data transmission, or bookings being initiated from ambiguous requests.

Missing User Warnings

Medium
Confidence
96% confidence
Finding
The skill includes a booking flow that transmits personal data such as name, email, and phone number to an external MCP service, but it does not warn the user beforehand or document consent expectations. This creates a privacy and trust risk because users may provide sensitive contact details without realizing they will be sent to a third-party endpoint.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal