Thank You For My Service

Security checks across malware telemetry and agentic risk

Overview

This is a text-only book companion for military/veteran topics with broad activation language, but no code, permissions, data access, persistence, or hidden behavior.

Install only if you want a memoir-style military and veteran-life assistant that may appear on broad military, PTSD, service, or transition terms. Treat its mental-health guidance as informal support and seek qualified professional or crisis help for urgent or clinical situations.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

High
Confidence
97% confidence
Finding
The trigger list includes broad, common terms such as "military," "service," "combat," and "transition," which can match many ordinary conversations unrelated to this skill. That can cause unintended invocation, context hijacking, and inappropriate surfacing of sensitive mental-health or military-themed content in situations where the user did not request it.

Vague Triggers

High
Confidence
94% confidence
Finding
The phrase saying the skill will appear whenever it "senses this book could help" defines activation in an ambiguous, subjective way rather than through clear user intent. In a skill dealing with trauma, PTSD, and veteran struggles, this increases the risk of unsolicited intervention in sensitive conversations and makes routing behavior unpredictable.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal