Back to skill

Security audit

size probe

Security checks across malware telemetry and agentic risk

Overview

This is a low-risk occupational-analysis reference skill with poor-quality repetitive content but no hidden execution, credential access, persistence, or data exfiltration behavior.

This skill appears safe to install from a security perspective, but expect it to add a large amount of duplicated, generic occupational-analysis text. Treat its output as a drafting aid rather than authoritative vocational policy or a precise analysis framework.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
94% confidence
Finding
The file content is an extremely repetitive, generic description that does not define what inputs should activate the skill or what boundaries constrain its behavior. In an agent environment, unclear scope can cause over-broad triggering or misuse in unintended contexts, increasing the chance of inappropriate data handling or unsafe task execution even if the text itself is not overtly malicious.

Vague Triggers

Medium
Confidence
95% confidence
Finding
The file consists of highly repetitive, generic plain-text content describing broad occupational-analysis concepts without any concrete trigger conditions, scope boundaries, or operational constraints. In an agent skill context, such ambiguity can cause over-broad invocation or misuse of the skill for unintended inputs, increasing the risk of incorrect behavior or prompt-surface abuse even though the content does not appear overtly malicious.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.