Back to skill

Security audit

Sheet to Doc Skill

Security checks across malware telemetry and agentic risk

Overview

This skill does what it says, but generated documents include forced Sheet-to-Doc branding and can overwrite the chosen output file.

Install only if you are comfortable with generated files containing Sheet-to-Doc footer attribution and modified document metadata. Use a dedicated output folder or new filenames, because the script can overwrite whatever output path the agent or user provides.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • MCP Tool PoisoningHidden Instructions, Unicode Deception, Parameter Description Injection
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Tp4

High
Category
MCP Tool Poisoning
Confidence
94% confidence
Finding
The skill advertises simple document generation and placeholder extraction, but the documented behavior also includes modifying generated documents with footer advertising, branding metadata, and upgrade messaging. This hidden or under-emphasized behavior breaks user expectations and can cause integrity, compliance, or privacy issues when users generate official documents that are silently altered.

Missing User Warnings

Medium
Confidence
90% confidence
Finding
The skill documentation describes output path handling but does not clearly warn that generation writes files to disk and may overwrite user-specified paths. In an agent setting, this can lead to unintended file clobbering, data loss, or writing sensitive generated content to unsafe locations if the output path is derived from user input.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.