Nemo社区热文
Security checks across malware telemetry and agentic risk
Overview
This is a simple instruction-only skill that fetches public trending article data from Nemo and does not request local files, credentials, persistence, or elevated access.
Before installing, confirm you are comfortable with the agent making an outbound HTTPS request to link-nemo.com, which exposes normal network metadata such as IP address. You may also need jq or another JSON parser even though only curl is declared as required.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
66/66 vendors flagged this skill as clean.
