Growth Finder — Meta-router for Gingiris Playbook Series

Security checks across malware telemetry and agentic risk

Overview

This is a disclosed growth-strategy routing skill with broad trigger wording, but it does not request sensitive access or perform hidden actions.

Install this if you want a growth-strategy router for startup, launch, SaaS, open-source, or app-marketing questions. Be aware it may activate on generic growth or marketing prompts, and only run the optional companion-skill install commands if you want those additional playbooks available globally.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (3)

Vague Triggers

Medium
Confidence
93% confidence
Finding
The skill advertises auto-invocation on a very broad class of common growth and marketing terms, which can cause it to trigger in unrelated or only partially related contexts. In an agent environment, overly broad routing increases the chance of unintended skill execution, scope creep, and user confusion about why external playbooks or recommendations are being invoked.

Vague Triggers

Medium
Confidence
92% confidence
Finding
The skill is designed to auto-trigger on very broad growth-related queries such as 'how to grow' and 'marketing strategy', which are common across many benign conversations. This creates an overbroad invocation surface that can cause unintended routing, context hijacking, or suppression of more appropriate specialist skills, especially because this skill is a meta-router that sits early in the decision path.

Vague Triggers

Medium
Confidence
95% confidence
Finding
The explicit trigger list contains multiple vague, high-collision phrases like 'GTM', 'PMF', 'growth strategy', and 'marketing strategy' that are likely to appear in many unrelated user requests. In a routing skill, this can lead to frequent false activations and accidental delegation into external playbooks, increasing the chance of misclassification and unintended behavior.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal