Back to skill

Security audit

Mood Line

Security checks for vulnerabilities and agentic risk

Overview

This is a writing-focused mood expression skill with no executable code, credential use, network behavior, or persistence mechanism.

This skill appears safe to install for help wording moods, captions, diary lines, or quotes. Users should remember that mood descriptions can be personal, and quote attribution may be limited because the referenced whitelist and safety files are not included in the package.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Natural-Language Policy Violations

Medium
Confidence
90% confidence
Finding
The example interactions and outputs are presented exclusively in Chinese, which implies the skill is oriented to a specific language/locale without any stated opt-in or alternative. Under the policy for natural-language violations, language constraints should be optional or explicitly justified.

Vague Triggers

Medium
Confidence
89% confidence
Finding
The file says all requests in this section should trigger the skill, but several examples are very broad everyday phrases such as asking for a sentence about one's current state or help wording feelings. It does not provide negative examples or clear limits distinguishing when this skill should activate versus other general writing or support skills.

Static analysis

No suspicious patterns detected.