The Elephant Whisperer: My Life with the Herd in the African Wild

Security checks across malware telemetry and agentic risk

Overview

This is a content-only book and conservation skill with no executable code, credentials, persistence, or hidden data access, though users should treat its wildlife-interaction advice cautiously.

Before installing, understand that this is an inspirational book-based guide, not professional wildlife safety training. Avoid following any advice that implies approaching, handling, or building trust with wild or dangerous animals without qualified expert supervision.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
92% confidence
Finding
The trigger list is extremely broad and includes generic terms such as 'elephant', 'South Africa', 'conservation', and even first-install / doesn't-know-how-to-start conditions, which can cause the skill to activate in many unrelated conversations. Over-broad activation can hijack user intent, insert unsolicited content, and increase the chance that the model follows this skill when a different skill or no skill should apply.

Missing User Warnings

Medium
Confidence
95% confidence
Finding
The content presents close interaction with wild elephants as a technique users can emulate, but omits clear safety warnings, professional-context framing, or advice not to approach dangerous wildlife. In a skill explicitly triggered by questions like 'How do I connect with animals,' this could encourage unsafe real-world behavior around large, unpredictable animals and lead to serious injury or death.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal