Back to skill

Security audit

Book Notary

Security checks across malware telemetry and agentic risk

Overview

This skill appears to be a straightforward notary search and booking helper that uses Lokuli’s external MCP service, with expected contact details for bookings.

Install this only if you want an agent to contact Lokuli for notary search and booking tasks. Before creating a booking, confirm the provider, time, service, and the name, email, and phone number that will be sent to Lokuli.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
93% confidence
Finding
The trigger description is broad enough to activate on vague phrases like any notary-related request, which can cause the agent to invoke this skill without clear user intent to contact a third-party service. In this context, overbroad routing is more dangerous because the skill can progress toward external search and booking actions that may involve personal data and real-world commitments.

Missing User Warnings

Medium
Confidence
97% confidence
Finding
The skill documents a booking flow that transmits customer name, email, and phone number to an external MCP service, but it does not warn that personal contact data will be shared. This is risky because users may unknowingly disclose sensitive personal information to a third party, and the skill context makes that danger more concrete since booking cannot occur without PII submission.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.