Back to skill

Security audit

Book Nails

Security checks across malware telemetry and agentic risk

Overview

This skill is a simple nail appointment booking helper that clearly points to Lokuli’s external booking service and shows the personal details used for bookings.

Install only if you intend to use Lokuli for nail-service search and booking. Before creating a booking, confirm the provider, service, appointment time, and the name, email, and phone number that will be sent to the external service.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
92% confidence
Finding
The trigger language is overly broad because it claims to activate on "any nails service request," which can cause the skill to be selected in situations where the user is only asking for general information rather than intending to search or book through an external service. In this context, over-triggering is risky because the skill is wired to an external booking MCP and may lead to unintended collection or transmission of user location and booking-related personal data.

Missing User Warnings

Medium
Confidence
96% confidence
Finding
The skill describes creating bookings with customer name, email, and phone number sent to Lokuli's external MCP endpoint, but it does not warn users that their personal contact information will be transmitted off-platform. This creates a privacy and consent risk, especially because users may not realize that sensitive personal data is being shared with a third-party booking service.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.