American Savage Insights Slights And Fights On Faith Sex Love And Politics

Security checks across malware telemetry and agentic risk

Overview

This appears to be a text-only relationship/book guidance skill, with the main issue being overly broad activation wording rather than harmful behavior.

Install only if you want the assistant to offer Dan Savage/book-style relationship guidance. Be aware it may activate too often on broad relationship or identity terms; disable it or adjust triggers if it appears in conversations where you did not intend to use it.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
88% confidence
Finding
The trigger list contains broad, common phrases such as 'LGBTQ,' 'Parenting,' 'Cheating,' and 'Monogamy' that can appear in many unrelated conversations. This can cause unintended skill activation, leading the agent to inject book-specific guidance or onboarding text into contexts where the user did not request it, which is a prompt-scope and routing integrity issue.

Vague Triggers

Medium
Confidence
81% confidence
Finding
The activation rule 'when the user says they just installed this skill or doesn't know how to start' is ambiguous and not uniquely tied to this skill. It could activate on generic onboarding statements intended for the platform or another skill, causing unsolicited content injection and misrouting.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal