Security audit
plg-playbook
Security checks across malware telemetry and agentic risk
Overview
This is a content-only product-led growth playbook with no hidden execution, data access, or persistence behavior found.
This appears safe to install as a static business playbook. Users should treat the included external links and commercial bundle references as normal promotional links and review them before visiting or purchasing, but the skill itself does not show security-sensitive behavior.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
63/63 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
