Back to skill

Security audit

multiplicador-de-contenido

Security checks for vulnerabilities and agentic risk

Overview

This is a text-only Spanish content-repurposing skill with disclosed file-saving and Telegram-summary behavior, and no evidence of malicious code, persistence, or hidden data exfiltration.

Install this if you want a Spanish-language helper for repurposing scripts into content formats. Be aware it may use profile or Segundo Cerebro context to identify your industry, save generated pieces under guiones/, and send a summary through Telegram in an OpenClaw setup.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (3)

Vague Triggers

High
Category
Not specified by scanner
Confidence
98% confidence
Finding

The trigger definition is overly broad and can cause the agent to activate this skill for loosely related requests, leading to misrouting and unintended behavior. In a multi-skill agent, that can override more appropriate skills or inject irrelevant instructions into unrelated conversations, reducing reliability and potentially affecting safety-critical routing decisions.

Content

No source excerpt is available for this finding.

Natural-Language Policy Violations

Medium
Category
Not specified by scanner
Confidence
85% confidence
Finding

The skill content and activation guidance are entirely in Spanish and do not offer a language fallback or user-choice mechanism. This can cause the agent to respond in the wrong language or apply Spanish-first instructions to users who did not opt in, creating usability issues and increasing the chance of misunderstanding user intent.

Content

No source excerpt is available for this finding.

Natural-Language Policy Violations

Low
Category
Not specified by scanner
Confidence
87% confidence
Finding

This file presents all user-facing guidance in Spanish and does not indicate that the skill is limited to Spanish-speaking users or provide an opt-in language choice. Under the language/locale policy, forcing a specific language without user choice can be a natural-language policy issue.

Content

No source excerpt is available for this finding.

Static analysis

No suspicious patterns detected.