Back to skill

Security audit

Agent Daily Report

Security checks across malware telemetry and agentic risk

Overview

This is a markdown-only reporting skill whose scheduled-report behavior is purpose-aligned, but users should confirm what activity data gets included before enabling it.

Before installing, confirm whether recurring reports are enabled by default, who receives them, which conversations/files/tool activity can be summarized, and whether the timezone can be changed. Disable automatic submission unless the schedule and data scope match your workspace policy.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (3)

Vague Triggers

Medium
Confidence
86% confidence
Finding
The skill description says it can submit reports automatically every night and also 'immediately' when requested, but it does not define activation boundaries, consent, or what data sources may be included in the report. In an agent setting, broad reporting triggers can cause unintended disclosure of prior conversation content, tool activity, or sensitive work context to a user or destination without clear user opt-in.

Vague Triggers

Medium
Confidence
93% confidence
Finding
The fixed daily 22:00 automatic submission behavior creates a standing exfiltration-like channel from agent memory/logs to a report output without any described consent, tenant boundary, or eligibility checks. If the agent has access to sensitive execution logs, this could leak confidential data, internal reasoning artifacts, or user content through routine unattended summaries.

Natural-Language Policy Violations

Medium
Confidence
79% confidence
Finding
Hardcoding Asia/Shanghai as the default reporting timezone/locale without user choice can cause reports to run at unexpected times and outside the user's expected business boundary. While not directly a code-execution issue, this can increase privacy and operational risk by triggering summaries during the wrong day window or in jurisdictions/users the setting does not fit.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal