Back to skill

Security audit

Sv Broll Planner

Security checks for vulnerabilities and agentic risk

Overview

This is a document-only creative planning skill for short-video B-roll and does not request code execution, network access, credentials, or persistent privileges.

This skill is reasonable to install if you want help planning B-roll shots for short videos. Be aware that broad trigger words may make it appear in general video-editing discussions, and you remain responsible for footage rights, stock licenses, and location or subject releases.

Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
83% confidence
Finding
The README lists broad trigger keywords like 'b-roll', 'cutaway', and 'visual variety' without constraints on context, exclusions, or required user intent. In agent systems, overly generic triggers can cause accidental or inappropriate activation in unrelated conversations, leading to workflow misfires, user confusion, and unintended handling of user content.

Static analysis

No suspicious patterns detected.