Elvis Future Scout

Security checks across malware telemetry and agentic risk

Overview

This is a low-risk trend-report writing skill with a disclosed weekly cadence and no evidence of hidden system access or data misuse.

Before installing, confirm that you want a recurring Monday trend report and that your OpenClaw client lets you pause or disable scheduled behavior. Also note that the skill is investment-themed but explicitly avoids specific stock picks, buy/sell advice, and short-term price predictions.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
92% confidence
Finding
The skill states that it will automatically generate a weekly report every Monday without requiring a new user request or presenting any warning or opt-out. This creates an autonomy and consent issue: the agent may take recurring action the user did not explicitly authorize on an ongoing basis, which can lead to unwanted notifications, resource use, or confusion about when the system is acting on its own.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal