程序员变量名生成器
Security checks across malware telemetry and agentic risk
Overview
This is an instruction-only helper for turning Chinese or English keywords into programming variable names, with no evidence of code execution, data access, or hidden behavior.
This skill appears safe to install as a rule-based variable-name generator. Be aware that its outputs may not match your team's naming conventions, and the registry capability tags look incorrect even though the artifact does not request those powers.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
65/65 vendors flagged this skill as clean.
