Back to skill

Security audit

小程序素材下载

Security checks across malware telemetry and agentic risk

Overview

The skill is a coherent media-resolver workflow that uses a configured external service and local downloader behavior, with no hidden install, persistence, or destructive actions found.

Install only if you intend to use this specific media resolver workflow. Treat the distribution key as a secret, understand that submitted links or share text are sent to the configured resolver service, and prefer submitting only the minimal URL rather than full private share text when possible.

Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (3)

Vague Triggers

Medium
Confidence
83% confidence
Finding
The skill description is broad enough to activate on generic configuration, debugging, syncing, or explanation requests that may not require this high-risk capability. Because the skill is centered on resolver access keys, remote service interaction, and downloader code paths, over-invocation increases the chance that unrelated user data, links, or secrets are routed through this skill unnecessarily.

Missing User Warnings

Medium
Confidence
90% confidence
Finding
The skill instructs callers to send user-provided links and an authentication header to a resolver service, but it does not prominently warn that these inputs will be transmitted to an external endpoint. In this context, links may contain sensitive tracking parameters or private content references, and the distribution key is a credential; lack of explicit disclosure can lead to inadvertent data exposure and misuse of service access.

Missing User Warnings

Medium
Confidence
92% confidence
Finding
The document explicitly instructs users to send shared links or full share text to a remote resolver service, but it does not clearly warn that this content will be transmitted to a third-party backend and logged as part of service usage. Shared text and links can contain personal data, tracking parameters, account identifiers, or private conversation context, so omission of a privacy notice can lead to unintended disclosure and compliance risk.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.