Burst Sms

Security checks across malware telemetry and agentic risk

Overview

This Burst SMS skill is coherent, but it gives an agent broad ability to send messages and change contact lists without clear confirmation safeguards.

Review before installing on any production Burst SMS account. Use only with explicit approval for every send, deletion, opt-out, bulk edit, cancellation, or raw proxy request, and verify recipients, message content, affected lists, cost, and compliance impact before execution.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
88% confidence
Finding
The skill description is broad enough to match many generic requests involving SMS data, records, or workflows, which can cause an agent to invoke it in situations where user intent is ambiguous. Because this skill exposes both read and high-impact write operations, overbroad routing increases the chance of unintended outbound messaging or modification of contact/list data.

Missing User Warnings

Medium
Confidence
94% confidence
Finding
The documentation advertises capabilities such as sending SMS, deleting lists, removing contacts, and opting out contacts without any warning that these are externally visible or destructive actions. In an agentic context, that omission can lead to accidental mass messaging, data loss, or irreversible customer-impacting changes if the model treats these actions as routine operations.

VirusTotal

63/63 vendors flagged this skill as clean.

View on VirusTotal