Basecamp

Security checks across malware telemetry and agentic risk

Overview

This Basecamp skill is coherent, but it gives an agent broad live Basecamp write/API access without clear confirmation safeguards.

Install only if you trust Membrane and intend to let an agent operate on your Basecamp workspace. Prefer curated Membrane actions over raw proxy requests, and require explicit confirmation before creating, updating, posting, or deleting Basecamp records.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
88% confidence
Finding
The skill explicitly instructs the agent to use a generic proxy capable of GET, POST, PUT, PATCH, and DELETE against the Basecamp API, but it does not require confirmation before mutating or potentially irreversible operations. In an agent setting, this increases the chance of unintended writes, deletions, or broad API use beyond the safer pre-defined actions, especially if a user request is ambiguous or prompt-injected.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal