Back to skill

Security audit

autodesk-clean-uninstall

Security checks across malware telemetry and agentic risk

Overview

This is a disclosed Autodesk cleanup skill, but it can make broad irreversible Windows changes and includes an unattended mode that weakens its safety claims.

Install only if you specifically intend to remove Autodesk/AutoCAD from a Windows machine. Prefer the step-by-step commands, do not use -Auto, review every listed path and registry key before approving deletion, and create backups or a restore point first.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
91% confidence
Finding
The usage scenarios are broad and do not tightly constrain when this destructive uninstall skill should be invoked. In context, the skill performs irreversible actions including process termination, file deletion, and registry cleanup across standard and dynamically discovered install paths, so vague trigger conditions materially increase the risk of accidental or overbroad execution.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.