Zenscrape

Security checks across malware telemetry and agentic risk

Overview

This appears to be a Zenscrape web-scraping integration whose network behavior is expected for its purpose, with documentation scoping improvements recommended.

Install only if you intend to use Zenscrape for web scraping or proxy requests. Treat target URLs, prompts, scraped content, and any Zenscrape or Membrane credentials as data shared with external services, and confirm scraping is appropriate for the sites you access.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
86% confidence
Finding
The invocation description is broad enough that an agent could select this skill for generic 'manage data' or 'automate workflows' requests, even when the user did not explicitly ask to use Zenscrape or perform scraping. In context, this matters because the skill enables outbound network access and web-scraping behavior, increasing the chance of unnecessary external requests and unintended data handling.

Missing User Warnings

Medium
Confidence
92% confidence
Finding
The skill describes Zenscrape's capabilities but does not clearly warn that use of the skill will initiate outbound requests to external services and may scrape third-party websites. That omission can lead to unsafe or surprising agent behavior, especially when users may not realize their request will trigger network activity and data transfer outside the local environment.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal