Gowok
Security checks across malware telemetry and agentic risk
Overview
The skill appears to be ordinary documentation for a Go framework and the supplied scan signals do not show hidden or harmful behavior.
This appears safe to install as a Go development documentation skill. As with any development helper, review commands before running them in your own projects, especially commands that install dependencies, modify files, or connect to databases.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
66/66 vendors flagged this skill as clean.
