Back to skill

Security audit

One Paper Company 一个公司一张纸

Security checks across malware telemetry and agentic risk

Overview

This skill is a disclosed company-research HTML generator whose network use, local file output, and Python build scripts fit its stated purpose.

Before installing, be aware that using this skill can search the web for public company data and generate a local HTML file, usually through bundled Python scripts. Use explicit prompts and specify an output path if you want control over where files are written.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
88% confidence
Finding
The trigger guidance includes very broad natural-language phrases such as generic requests to 'research' a company, which can cause the skill to activate when the user did not intend to invoke a tool that performs web fetching, subprocess execution, and local file output. This increases the risk of unintended network activity or file generation under ambiguous prompts, especially because the skill supports multiple powerful tools.

Vague Triggers

Medium
Confidence
90% confidence
Finding
The trigger list includes broad phrases such as '公司周期复盘', '公司速览卡', and '公司竞争格局' that can match ordinary company-analysis requests rather than a narrowly scoped invocation. This can cause accidental skill activation, leading the agent to generate or write outputs in contexts where the user did not clearly intend to use this skill.

VirusTotal

59/59 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

Detected: suspicious.dynamic_code_execution

Dynamic code execution detected.

Critical
Code
suspicious.dynamic_code_execution
Location
template/echarts.5.5.0.min.js:45