Coze Asr

Security checks across malware telemetry and agentic risk

Overview

This is a straightforward Coze speech-to-text helper, but users should know selected audio is uploaded to Coze and the script also needs curl.

Install only if you are comfortable sending chosen audio files to Coze for transcription. Avoid sensitive or confidential recordings unless you have authorization, protect the COZE_API_KEY, and ensure curl is available in addition to jq.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • MCP Least PrivilegeUnderdeclared Capability, Wildcard Permission, Missing Permission Declaration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Lp3

Medium
Category
MCP Least Privilege
Confidence
88% confidence
Finding
The skill invokes a shell script but does not declare corresponding permissions, creating a mismatch between documented trust boundaries and actual execution capabilities. This can mislead users or policy engines about what the skill is allowed to do, increasing the chance of unintended local command execution or insufficient review of shell-based behavior.

Missing User Warnings

Medium
Confidence
95% confidence
Finding
The documentation tells users to transcribe audio via Coze API but does not clearly warn that the audio content is uploaded to an external third-party service. Users may unknowingly send sensitive recordings, leading to privacy, compliance, or data handling risks if the audio contains confidential or personal information.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal