Back to skill

Security audit

Security Digital Human Ops

Security checks across malware telemetry and agentic risk

Overview

This is a markdown-only helper for financial digital-human marketing operations, with no executable code or hidden system access.

Install only if you want financial digital-human operations assistance. Review generated scripts for advertising and financial-marketing compliance, treat the regulatory update section as advisory rather than authoritative, and use aggregated or anonymized metrics instead of customer communications, account data, or confidential business records.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
89% confidence
Finding
The trigger list is broad enough to match many generic marketing, content, and virtual-assistant conversations, which can cause unintended activation outside the intended banking digital-human use case. In an agent setting, overbroad routing increases the chance the skill responds in the wrong context and produces irrelevant or non-compliant financial marketing content without the user explicitly requesting this specialization.

VirusTotal

62/62 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.