Back to skill

Security audit

Book Battery

Security checks across malware telemetry and agentic risk

Overview

This skill appears to do what it says: help search and book battery services through Lokuli, with ordinary booking privacy considerations.

Install this if you intend to use Lokuli for battery-service search and booking. Before creating a booking, confirm the provider, time, and contact details, and only share name, email, and phone information you are comfortable sending to Lokuli and any service provider involved.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
94% confidence
Finding
The trigger description is broad enough to activate on general battery-related queries, not just explicit booking intent. In an agent setting, this can cause the skill to engage unnecessarily and steer users into an external booking flow they did not request, increasing the chance of unintended data sharing or unwanted transactions.

Missing User Warnings

Medium
Confidence
97% confidence
Finding
The skill documents a booking flow that sends customer name, email, and phone number to a third-party MCP endpoint, but it does not warn that personal data will be transmitted externally. This undermines informed consent and can lead to privacy violations if users do not realize their contact details are being shared with Lokuli.

VirusTotal

63/63 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.