Security audit
OXVODO Motion Prompt Architect
Security checks across malware telemetry and agentic risk
Overview
This skill is a text prompt-writing helper, with the main consideration being an optional third-party MCP package the user must choose to install.
The skill itself is purpose-aligned and low risk as a text workflow. If you enable the optional MCP, review and trust the referenced GitHub package first, and keep the included tool list limited to the four disclosed helpers.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
