Back to skill

Security audit

workflow-guard-rails

Security checks across malware telemetry and agentic risk

Overview

This skill is a documentation-only workflow safety guide with disclosed guardrails and no hidden executable behavior.

Before installing, note that this skill may be loaded for broad workflow-safety terms and it encourages audit logging; use it where checkpointing, validation, retries, or external side-effect control are actually relevant.

Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (3)

Vague Triggers

Medium
Confidence
89% confidence
Finding
The phrase "agent guard" is underspecified and may match many unrelated agent-safety or access-control contexts. Ambiguous activation can lead to unintended skill loading, which is a security-relevant routing issue because it may alter workflow behavior or encourage use of this wrapper where it does not fit.

Vague Triggers

Medium
Confidence
89% confidence
Finding
The phrase "agent guard" is underspecified and may match many unrelated agent-safety or access-control contexts. Ambiguous activation can lead to unintended skill loading, which is a security-relevant routing issue because it may alter workflow behavior or encourage use of this wrapper where it does not fit.

Vague Triggers

Medium
Confidence
95% confidence
Finding
The read triggers list contains several generic operational terms without exclusions, such as idempotency, audit log, and drift detection, which can arise in many unrelated tasks. In skill-routing systems, overly permissive triggers can cause accidental invocation, priority hijacking, or dilution of more appropriate skills, especially in unattended or production workflow contexts where this skill is intended to intervene.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.