WebUntis

Security checks across malware telemetry and agentic risk

Overview

This skill is a disclosed WebUntis timetable helper that uses provided school credentials to fetch schedule data from the configured WebUntis server.

Before installing, use a dedicated read-only student account if available, provide credentials only through environment variables, and double-check WEBUNTIS_BASE_URL so the password is sent only to the intended school WebUntis server.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • MCP Least PrivilegeUnderdeclared Capability, Wildcard Permission, Missing Permission Declaration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Lp3

Medium
Category
MCP Least Privilege
Confidence
87% confidence
Finding
The skill uses both environment variables and network access to authenticate to a WebUntis instance, but the skill metadata does not declare these capabilities as permissions. This creates a transparency and governance gap: operators may enable or run the skill without realizing it can read secrets from the environment and make outbound authenticated requests, which can lead to unintended credential use or data exposure.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal