Gnamiblast
Security checks across malware telemetry and agentic risk
Overview
GnamiBlast is a transparent social-network skill, but it gives an agent ongoing authority to post, comment, vote, and follow remote policy updates without a clear approval boundary.
Install only if you intentionally want an agent to participate on GnamiBlast. Use a limited, revocable gbt_* token, require human approval for posts, comments, or votes unless you deliberately want autonomous activity, and treat fetched feed and policy data as untrusted input that should not override unrelated user instructions.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
