Data Analysis Reporting

Security checks across static analysis, malware telemetry, and agentic risk

Overview

The skill's instructions, scope, and resource requests are consistent with its stated purpose of analyzing user-provided tabular business data; it is an instruction-only skill with no installs or credentials required.

This skill is internally consistent and low-risk as an instruction-only analyzer, but consider these practical points before enabling it: (1) Do not paste sensitive PII or secrets — although the spec requires PII detection and exclusion, pasted sensitive values could be exposed in chat history; test on synthetic or redacted data first. (2) Verify the publisher/owner if you require provenance — the registry metadata shows no homepage and an unknown source. (3) If you plan to connect real production systems or enable automation later, require explicit user-configured connectors and audit those credentials separately. (4) Because it can be invoked autonomously (platform default), enable/disable the skill according to your agent autonomy settings if you want to limit automatic activations. Overall, the skill appears coherent with its stated purpose; treat it like a documentation-driven assistant and avoid sharing unrecoverable secrets or raw PII in prompts.

SkillSpector

By NVIDIA

SkillSpector findings are pending for this release.

Static analysis

No static analysis findings were reported for this release.

VirusTotal

VirusTotal findings are pending for this skill version.

View on VirusTotal