Back to skill

Security audit

Facebook Video Downloader

Security checks across malware telemetry and agentic risk

Overview

The skill likely performs the advertised Facebook video download task, but it makes misleading privacy claims and includes a hardcoded crypto payment flow users should review carefully.

Install only if you are comfortable sending Facebook video URLs to savefbs.com. Do not rely on the no-transmission privacy claim, and do not pay through the displayed crypto payment link unless the publisher provides a verified billing and unlock process.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • MCP Tool PoisoningHidden Instructions, Unicode Deception, Parameter Description Injection
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (5)

Intent-Code Divergence

High
Confidence
99% confidence
Finding
The security notice is contradicted by the documented behavior: the skill explicitly states it connects to savefbs.com and sends user-provided Facebook video URLs to that external service. Misrepresenting third-party data transmission can cause users and downstream agents to make unsafe privacy decisions under false assumptions, especially when URLs may reveal account activity, private interests, or embedded identifiers.

Intent-Code Divergence

Medium
Confidence
94% confidence
Finding
The script’s top-level description presents it as a simple Facebook video downloader, but the implementation also enforces a local quota/paywall and injects payment instructions tied to a hardcoded wallet address. This is dangerous because users or calling agents may invoke the skill under incomplete assumptions, leading to undisclosed monetization behavior and potential financial/social-engineering risk.

Missing User Warnings

Medium
Confidence
96% confidence
Finding
The skill instructs use of an external service but does not clearly warn users that their Facebook URL will be transmitted to a third party. This omission undermines informed consent and may expose user data or sensitive link parameters to an external processor without the user's awareness.

Missing User Warnings

Low
Confidence
84% confidence
Finding
The workflow offers to share download URLs or download content directly without warning about privacy, trust, or system-impact concerns. Direct-download behavior can cause users or agents to retrieve untrusted content from external URLs, increasing risk of unsafe file handling, unexpected bandwidth/storage use, or interaction with opaque third-party infrastructure.

Missing User Warnings

Medium
Confidence
91% confidence
Finding
The provided Facebook video URL is sent to savefbs.com, a third-party service, without any explicit notice or consent mechanism in the script. This creates a privacy and data-handling risk because URLs may contain identifying information, private resource references, or access tokens, and users are not informed that their data is being disclosed externally.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.