Freshlearn

Security checks across malware telemetry and agentic risk

Overview

The skill is a real Freshlearn integration, but it gives an agent broad authenticated ability to change business data without clear built-in guardrails.

Install only if you are comfortable allowing an agent to act through Membrane with your connected Freshlearn permissions. Use the least-privileged Freshlearn/Membrane account available, review or revoke Membrane access when finished, prefer listed actions over raw proxy requests, and require the agent to ask before creating, updating, enrolling, unenrolling, or deleting business data.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
90% confidence
Finding
The skill explicitly documents a generic authenticated proxy request mechanism and lists destructive HTTP methods like POST, PUT, PATCH, and DELETE without requiring confirmation or warning about side effects. In an agent setting, this increases the risk that the agent performs unsafe direct API calls that modify or delete Freshlearn data when no safer prebuilt action or user confirmation is used.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal