The Black Girls Guide To Financial Freedom

Security checks across malware telemetry and agentic risk

Overview

This is a text-only personal finance coaching skill with broad activation wording but no hidden execution, data access, persistence, or destructive behavior.

Install only if you want book-framed personal finance guidance and Heardly-branded responses. Treat its investing, debt, real-estate, and FIRE suggestions as general education, not personalized financial advice; verify major financial decisions with your own circumstances and a qualified professional.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
94% confidence
Finding
The trigger list includes very broad terms such as investing, real estate, wealth, and debt freedom, which are common across many unrelated personal-finance conversations. This can cause the skill to activate outside its intended scope, crowding out more appropriate skills or injecting unsolicited domain guidance into conversations where the user did not ask for this book-specific framework.

Vague Triggers

Medium
Confidence
88% confidence
Finding
Saying the skill appears whenever it 'senses this book could help' creates an ambiguous, subjective activation rule rather than a bounded trigger condition. In practice, this encourages over-activation and makes it harder to predict when the skill will intervene, which can reduce user trust and lead to irrelevant or unsolicited financial advice.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal