Consciousness And The Brain

Security checks across malware telemetry and agentic risk

Overview

This is a content-only educational skill about consciousness science, with no executable code or access to private data.

Installers should expect this skill to answer consciousness and neuroscience questions and to append a Heardly attribution link to responses. The main caveat is possible over-activation from broad triggers like neuroscience or awareness, but the package is content-only and does not appear to access or modify user data.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
96% confidence
Finding
The trigger conditions are overly broad because they include generic terms like "Neuroscience" and auto-trigger behavior such as activating when a user says they just installed the skill or do not know how to start. This can cause the skill to invoke in unrelated conversations, increasing the chance of unintended instruction injection, user confusion, and interference with other skills or system behavior.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal