Vtiger
Security checks across malware telemetry and agentic risk
Overview
This is a real Vtiger CRM integration, but it gives an agent broad authority to create, update, delete, and generate CRM actions without clear safeguards for business data changes.
Install only if you are comfortable giving an agent delegated access to your Vtiger CRM through Membrane. Use a least-privileged Vtiger account, verify the Membrane CLI before installing it globally, and require explicit confirmation before create, update, delete, invoice, order, user, role, permission, or other business-critical actions.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
