Xiaoqinli

Security checks across malware telemetry and agentic risk

Overview

This skill is a straightforward guide for using an external XQL transpiler CLI, with no evidence of hidden data access or automatic unsafe behavior.

Before installing, review the linked Xiaoqinli source repository and build the xql binary only if you trust it. Use the tool on files you intend to compile, choose output paths deliberately, and inspect generated code before building or running it.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

VirusTotal

55/55 vendors flagged this skill as clean.

View on VirusTotal