Calling All Minds: How To Think and Create Like an Inventor

Security checks across malware telemetry and agentic risk

Overview

This is a read-only educational skill for inventor-themed learning, with some usability and safety cautions but no evidence of malware or hidden data access.

Install if you want an educational inventor-project guide. For children or physical builds, use adult supervision, safe tools, protective gear when appropriate, and do not treat the skill as a complete safety manual. Expect occasional proactive onboarding text and a Heardly watermark in responses.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (3)

Vague Triggers

Medium
Confidence
93% confidence
Finding
The trigger list is unusually broad and includes many generic educational phrases and numerous topic keywords, which can cause the skill to activate in contexts where the user did not explicitly intend to invoke it. This creates prompt-routing and user-intent confusion risk, especially because the skill can override normal conversation flow with prescriptive behavior.

Vague Triggers

Medium
Confidence
91% confidence
Finding
The first-load and 'doesn't know how to start' activation rule is ambiguous and instructs the AI to proactively present content without a clear user request. This can lead to unsolicited invocation, unexpected output injection into unrelated sessions, and reduced user control over when the skill is used.

Missing User Warnings

Medium
Confidence
88% confidence
Finding
The skill promotes hands-on projects involving physical materials and tools such as wood, scissors, glue, string, and flight-related builds, but it does not include clear safety guidance or age-appropriate warnings. In an educational skill aimed at making and experimenting, omission of basic safety instructions increases the chance of user injury or unsafe misuse.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal