AirShelf Agentic Commerce Platform

Security checks across malware telemetry and agentic risk

Overview

AirShelf is a disclosed shopping helper that sends product searches to AirShelf and can create checkout links, with ordinary privacy and purchase-confirmation cautions.

Install only if you are comfortable with product searches and checkout-link creation going through AirShelf. Avoid putting unnecessary personal, medical, child-related, or contact details in search queries; provide an email only when you intentionally want it used for order tracking; and confirm the product, merchant, price, quantity, shipping, returns, allergens, and checkout destination before purchasing.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

External Transmission

Medium
Category
Data Exfiltration
Content
**Example:**
```bash
curl -s "https://dashboard.airshelf.ai/api/search?q=natural+mosquito+repellent+for+babies&limit=3"
```

## Step 2: Compare Products
Confidence
83% confidence
Finding
curl -s "https://dashboard.airshelf.ai/api/search?q=natural+mosquito+repellent+for+babies&limit=3" ``` ## Step 2: Compare Products Compare 2-10 products side by side with structured comparison axes.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal