Business Opportunity Generator

Security checks across malware telemetry and agentic risk

Overview

This is a prompt-only business ideation skill with no executable code, credential use, persistence, or hidden data handling; its main issue is broad activation wording.

Install this if you want structured help brainstorming business opportunities and landing page copy. Be aware it may activate on broad phrases like market research or random ideas, and independently verify any market, legal, financial, or competitive claims before acting on the generated business advice.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
94% confidence
Finding
The skill metadata uses very broad activation phrases such as "market research," "pain points," and "what business should I build," which can match many unrelated user requests and cause unintended invocation. Over-broad routing is dangerous because it can override more appropriate skills, inject irrelevant instructions into conversations, and increase the chance that downstream phases are executed in contexts the user did not intend.

Vague Triggers

Medium
Confidence
92% confidence
Finding
Phase 1 includes ambiguous trigger language like "give me random ideas," which is common in many contexts unrelated to business creation. This is risky because the skill may activate on generic brainstorming requests and steer the interaction into business-idea generation without clear user intent, reducing reliability and potentially displacing safer or more relevant skills.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal